tcrypt.h 103 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318131913201321132213231324132513261327132813291330133113321333133413351336133713381339134013411342134313441345134613471348134913501351135213531354135513561357135813591360136113621363136413651366136713681369137013711372137313741375137613771378137913801381138213831384138513861387138813891390139113921393139413951396139713981399140014011402140314041405140614071408140914101411141214131414141514161417141814191420142114221423142414251426142714281429143014311432143314341435143614371438143914401441144214431444144514461447144814491450145114521453145414551456145714581459146014611462146314641465146614671468146914701471147214731474147514761477147814791480148114821483148414851486148714881489149014911492149314941495149614971498149915001501150215031504150515061507150815091510151115121513151415151516151715181519152015211522152315241525152615271528152915301531153215331534153515361537153815391540154115421543154415451546154715481549155015511552155315541555155615571558155915601561156215631564156515661567156815691570157115721573157415751576157715781579158015811582158315841585158615871588158915901591159215931594159515961597159815991600160116021603160416051606160716081609161016111612161316141615161616171618161916201621162216231624162516261627162816291630163116321633163416351636163716381639164016411642164316441645164616471648164916501651165216531654165516561657165816591660166116621663166416651666166716681669167016711672167316741675167616771678167916801681168216831684168516861687168816891690169116921693169416951696169716981699170017011702170317041705170617071708170917101711171217131714171517161717171817191720172117221723172417251726172717281729173017311732173317341735173617371738173917401741174217431744174517461747174817491750175117521753175417551756175717581759176017611762176317641765176617671768176917701771177217731774177517761777177817791780178117821783178417851786178717881789179017911792179317941795179617971798179918001801180218031804180518061807180818091810181118121813181418151816181718181819182018211822182318241825182618271828182918301831183218331834183518361837183818391840184118421843184418451846184718481849185018511852185318541855185618571858185918601861186218631864186518661867186818691870187118721873187418751876187718781879188018811882188318841885188618871888188918901891189218931894189518961897189818991900190119021903190419051906190719081909191019111912191319141915191619171918191919201921192219231924192519261927192819291930193119321933193419351936193719381939194019411942194319441945194619471948194919501951195219531954195519561957195819591960196119621963196419651966196719681969197019711972197319741975197619771978197919801981198219831984198519861987198819891990199119921993199419951996199719981999200020012002200320042005200620072008200920102011201220132014201520162017201820192020202120222023202420252026202720282029203020312032203320342035203620372038203920402041204220432044204520462047204820492050205120522053205420552056205720582059206020612062206320642065206620672068206920702071207220732074207520762077207820792080208120822083208420852086208720882089209020912092209320942095209620972098209921002101210221032104210521062107210821092110211121122113211421152116211721182119212021212122212321242125212621272128212921302131213221332134213521362137213821392140214121422143214421452146214721482149215021512152215321542155215621572158215921602161216221632164216521662167216821692170217121722173217421752176217721782179218021812182218321842185218621872188218921902191219221932194219521962197219821992200220122022203220422052206220722082209221022112212221322142215221622172218221922202221222222232224222522262227222822292230223122322233223422352236223722382239224022412242224322442245224622472248224922502251225222532254225522562257225822592260226122622263226422652266226722682269227022712272227322742275227622772278227922802281228222832284228522862287228822892290229122922293229422952296229722982299230023012302230323042305230623072308230923102311231223132314231523162317231823192320232123222323232423252326232723282329233023312332233323342335233623372338233923402341234223432344234523462347234823492350235123522353235423552356235723582359236023612362236323642365236623672368236923702371237223732374237523762377237823792380238123822383238423852386238723882389239023912392239323942395239623972398239924002401240224032404240524062407240824092410241124122413241424152416241724182419242024212422242324242425242624272428242924302431243224332434243524362437243824392440244124422443244424452446244724482449245024512452245324542455245624572458245924602461246224632464246524662467246824692470247124722473247424752476247724782479248024812482248324842485248624872488248924902491249224932494249524962497249824992500250125022503250425052506250725082509251025112512251325142515251625172518251925202521252225232524252525262527252825292530253125322533253425352536253725382539254025412542254325442545254625472548254925502551255225532554255525562557255825592560256125622563256425652566256725682569257025712572257325742575257625772578257925802581258225832584258525862587258825892590259125922593259425952596259725982599260026012602260326042605260626072608260926102611261226132614261526162617261826192620262126222623262426252626262726282629263026312632263326342635263626372638263926402641264226432644264526462647264826492650265126522653265426552656265726582659266026612662266326642665266626672668266926702671267226732674267526762677267826792680268126822683268426852686268726882689269026912692269326942695269626972698269927002701270227032704270527062707270827092710271127122713271427152716271727182719272027212722272327242725272627272728272927302731273227332734273527362737273827392740274127422743274427452746274727482749275027512752275327542755275627572758275927602761276227632764276527662767276827692770277127722773277427752776277727782779278027812782278327842785278627872788278927902791279227932794279527962797279827992800280128022803280428052806280728082809281028112812281328142815281628172818281928202821282228232824282528262827282828292830283128322833283428352836283728382839284028412842284328442845284628472848284928502851285228532854285528562857285828592860286128622863286428652866286728682869287028712872287328742875287628772878287928802881288228832884288528862887288828892890289128922893289428952896289728982899290029012902290329042905290629072908290929102911291229132914291529162917291829192920292129222923292429252926292729282929293029312932293329342935293629372938293929402941294229432944294529462947294829492950295129522953295429552956295729582959296029612962296329642965296629672968296929702971297229732974297529762977
  1. /*
  2. * Quick & dirty crypto testing module.
  3. *
  4. * This will only exist until we have a better testing mechanism
  5. * (e.g. a char device).
  6. *
  7. * Copyright (c) 2002 James Morris <jmorris@intercode.com.au>
  8. * Copyright (c) 2002 Jean-Francois Dive <jef@linuxbe.org>
  9. *
  10. * This program is free software; you can redistribute it and/or modify it
  11. * under the terms of the GNU General Public License as published by the Free
  12. * Software Foundation; either version 2 of the License, or (at your option)
  13. * any later version.
  14. *
  15. * 2004-08-09 Cipher speed tests by Reyk Floeter <reyk@vantronix.net>
  16. * 2003-09-14 Changes by Kartikey Mahendra Bhatt
  17. *
  18. */
  19. #ifndef _CRYPTO_TCRYPT_H
  20. #define _CRYPTO_TCRYPT_H
  21. #define MAX_DIGEST_SIZE 64
  22. #define MAX_TAP 8
  23. #define MAX_KEYLEN 56
  24. #define MAX_IVLEN 32
  25. struct hash_testvec {
  26. char plaintext[128];
  27. unsigned char psize;
  28. char digest[MAX_DIGEST_SIZE];
  29. unsigned char np;
  30. unsigned char tap[MAX_TAP];
  31. char key[128]; /* only used with keyed hash algorithms */
  32. unsigned char ksize;
  33. };
  34. struct hmac_testvec {
  35. char key[128];
  36. unsigned char ksize;
  37. char plaintext[128];
  38. unsigned char psize;
  39. char digest[MAX_DIGEST_SIZE];
  40. unsigned char np;
  41. unsigned char tap[MAX_TAP];
  42. };
  43. struct cipher_testvec {
  44. unsigned char fail;
  45. unsigned char wk; /* weak key flag */
  46. char key[MAX_KEYLEN];
  47. unsigned char klen;
  48. char iv[MAX_IVLEN];
  49. char input[48];
  50. unsigned char ilen;
  51. char result[48];
  52. unsigned char rlen;
  53. int np;
  54. unsigned char tap[MAX_TAP];
  55. };
  56. struct cipher_speed {
  57. unsigned char klen;
  58. unsigned int blen;
  59. };
  60. /*
  61. * MD4 test vectors from RFC1320
  62. */
  63. #define MD4_TEST_VECTORS 7
  64. static struct hash_testvec md4_tv_template [] = {
  65. {
  66. .plaintext = "",
  67. .digest = { 0x31, 0xd6, 0xcf, 0xe0, 0xd1, 0x6a, 0xe9, 0x31,
  68. 0xb7, 0x3c, 0x59, 0xd7, 0xe0, 0xc0, 0x89, 0xc0 },
  69. }, {
  70. .plaintext = "a",
  71. .psize = 1,
  72. .digest = { 0xbd, 0xe5, 0x2c, 0xb3, 0x1d, 0xe3, 0x3e, 0x46,
  73. 0x24, 0x5e, 0x05, 0xfb, 0xdb, 0xd6, 0xfb, 0x24 },
  74. }, {
  75. .plaintext = "abc",
  76. .psize = 3,
  77. .digest = { 0xa4, 0x48, 0x01, 0x7a, 0xaf, 0x21, 0xd8, 0x52,
  78. 0x5f, 0xc1, 0x0a, 0xe8, 0x7a, 0xa6, 0x72, 0x9d },
  79. }, {
  80. .plaintext = "message digest",
  81. .psize = 14,
  82. .digest = { 0xd9, 0x13, 0x0a, 0x81, 0x64, 0x54, 0x9f, 0xe8,
  83. 0x18, 0x87, 0x48, 0x06, 0xe1, 0xc7, 0x01, 0x4b },
  84. }, {
  85. .plaintext = "abcdefghijklmnopqrstuvwxyz",
  86. .psize = 26,
  87. .digest = { 0xd7, 0x9e, 0x1c, 0x30, 0x8a, 0xa5, 0xbb, 0xcd,
  88. 0xee, 0xa8, 0xed, 0x63, 0xdf, 0x41, 0x2d, 0xa9 },
  89. .np = 2,
  90. .tap = { 13, 13 },
  91. }, {
  92. .plaintext = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789",
  93. .psize = 62,
  94. .digest = { 0x04, 0x3f, 0x85, 0x82, 0xf2, 0x41, 0xdb, 0x35,
  95. 0x1c, 0xe6, 0x27, 0xe1, 0x53, 0xe7, 0xf0, 0xe4 },
  96. }, {
  97. .plaintext = "123456789012345678901234567890123456789012345678901234567890123"
  98. "45678901234567890",
  99. .psize = 80,
  100. .digest = { 0xe3, 0x3b, 0x4d, 0xdc, 0x9c, 0x38, 0xf2, 0x19,
  101. 0x9c, 0x3e, 0x7b, 0x16, 0x4f, 0xcc, 0x05, 0x36 },
  102. },
  103. };
  104. /*
  105. * MD5 test vectors from RFC1321
  106. */
  107. #define MD5_TEST_VECTORS 7
  108. static struct hash_testvec md5_tv_template[] = {
  109. {
  110. .digest = { 0xd4, 0x1d, 0x8c, 0xd9, 0x8f, 0x00, 0xb2, 0x04,
  111. 0xe9, 0x80, 0x09, 0x98, 0xec, 0xf8, 0x42, 0x7e },
  112. }, {
  113. .plaintext = "a",
  114. .psize = 1,
  115. .digest = { 0x0c, 0xc1, 0x75, 0xb9, 0xc0, 0xf1, 0xb6, 0xa8,
  116. 0x31, 0xc3, 0x99, 0xe2, 0x69, 0x77, 0x26, 0x61 },
  117. }, {
  118. .plaintext = "abc",
  119. .psize = 3,
  120. .digest = { 0x90, 0x01, 0x50, 0x98, 0x3c, 0xd2, 0x4f, 0xb0,
  121. 0xd6, 0x96, 0x3f, 0x7d, 0x28, 0xe1, 0x7f, 0x72 },
  122. }, {
  123. .plaintext = "message digest",
  124. .psize = 14,
  125. .digest = { 0xf9, 0x6b, 0x69, 0x7d, 0x7c, 0xb7, 0x93, 0x8d,
  126. 0x52, 0x5a, 0x2f, 0x31, 0xaa, 0xf1, 0x61, 0xd0 },
  127. }, {
  128. .plaintext = "abcdefghijklmnopqrstuvwxyz",
  129. .psize = 26,
  130. .digest = { 0xc3, 0xfc, 0xd3, 0xd7, 0x61, 0x92, 0xe4, 0x00,
  131. 0x7d, 0xfb, 0x49, 0x6c, 0xca, 0x67, 0xe1, 0x3b },
  132. .np = 2,
  133. .tap = {13, 13}
  134. }, {
  135. .plaintext = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789",
  136. .psize = 62,
  137. .digest = { 0xd1, 0x74, 0xab, 0x98, 0xd2, 0x77, 0xd9, 0xf5,
  138. 0xa5, 0x61, 0x1c, 0x2c, 0x9f, 0x41, 0x9d, 0x9f },
  139. }, {
  140. .plaintext = "12345678901234567890123456789012345678901234567890123456789012"
  141. "345678901234567890",
  142. .psize = 80,
  143. .digest = { 0x57, 0xed, 0xf4, 0xa2, 0x2b, 0xe3, 0xc9, 0x55,
  144. 0xac, 0x49, 0xda, 0x2e, 0x21, 0x07, 0xb6, 0x7a },
  145. }
  146. };
  147. /*
  148. * SHA1 test vectors from from FIPS PUB 180-1
  149. */
  150. #define SHA1_TEST_VECTORS 2
  151. static struct hash_testvec sha1_tv_template[] = {
  152. {
  153. .plaintext = "abc",
  154. .psize = 3,
  155. .digest = { 0xa9, 0x99, 0x3e, 0x36, 0x47, 0x06, 0x81, 0x6a, 0xba, 0x3e,
  156. 0x25, 0x71, 0x78, 0x50, 0xc2, 0x6c, 0x9c, 0xd0, 0xd8, 0x9d },
  157. }, {
  158. .plaintext = "abcdbcdecdefdefgefghfghighijhijkijkljklmklmnlmnomnopnopq",
  159. .psize = 56,
  160. .digest = { 0x84, 0x98, 0x3e, 0x44, 0x1c, 0x3b, 0xd2, 0x6e, 0xba, 0xae,
  161. 0x4a, 0xa1, 0xf9, 0x51, 0x29, 0xe5, 0xe5, 0x46, 0x70, 0xf1 },
  162. .np = 2,
  163. .tap = { 28, 28 }
  164. }
  165. };
  166. /*
  167. * SHA256 test vectors from from NIST
  168. */
  169. #define SHA256_TEST_VECTORS 2
  170. static struct hash_testvec sha256_tv_template[] = {
  171. {
  172. .plaintext = "abc",
  173. .psize = 3,
  174. .digest = { 0xba, 0x78, 0x16, 0xbf, 0x8f, 0x01, 0xcf, 0xea,
  175. 0x41, 0x41, 0x40, 0xde, 0x5d, 0xae, 0x22, 0x23,
  176. 0xb0, 0x03, 0x61, 0xa3, 0x96, 0x17, 0x7a, 0x9c,
  177. 0xb4, 0x10, 0xff, 0x61, 0xf2, 0x00, 0x15, 0xad },
  178. }, {
  179. .plaintext = "abcdbcdecdefdefgefghfghighijhijkijkljklmklmnlmnomnopnopq",
  180. .psize = 56,
  181. .digest = { 0x24, 0x8d, 0x6a, 0x61, 0xd2, 0x06, 0x38, 0xb8,
  182. 0xe5, 0xc0, 0x26, 0x93, 0x0c, 0x3e, 0x60, 0x39,
  183. 0xa3, 0x3c, 0xe4, 0x59, 0x64, 0xff, 0x21, 0x67,
  184. 0xf6, 0xec, 0xed, 0xd4, 0x19, 0xdb, 0x06, 0xc1 },
  185. .np = 2,
  186. .tap = { 28, 28 }
  187. },
  188. };
  189. /*
  190. * SHA384 test vectors from from NIST and kerneli
  191. */
  192. #define SHA384_TEST_VECTORS 4
  193. static struct hash_testvec sha384_tv_template[] = {
  194. {
  195. .plaintext= "abc",
  196. .psize = 3,
  197. .digest = { 0xcb, 0x00, 0x75, 0x3f, 0x45, 0xa3, 0x5e, 0x8b,
  198. 0xb5, 0xa0, 0x3d, 0x69, 0x9a, 0xc6, 0x50, 0x07,
  199. 0x27, 0x2c, 0x32, 0xab, 0x0e, 0xde, 0xd1, 0x63,
  200. 0x1a, 0x8b, 0x60, 0x5a, 0x43, 0xff, 0x5b, 0xed,
  201. 0x80, 0x86, 0x07, 0x2b, 0xa1, 0xe7, 0xcc, 0x23,
  202. 0x58, 0xba, 0xec, 0xa1, 0x34, 0xc8, 0x25, 0xa7 },
  203. }, {
  204. .plaintext = "abcdbcdecdefdefgefghfghighijhijkijkljklmklmnlmnomnopnopq",
  205. .psize = 56,
  206. .digest = { 0x33, 0x91, 0xfd, 0xdd, 0xfc, 0x8d, 0xc7, 0x39,
  207. 0x37, 0x07, 0xa6, 0x5b, 0x1b, 0x47, 0x09, 0x39,
  208. 0x7c, 0xf8, 0xb1, 0xd1, 0x62, 0xaf, 0x05, 0xab,
  209. 0xfe, 0x8f, 0x45, 0x0d, 0xe5, 0xf3, 0x6b, 0xc6,
  210. 0xb0, 0x45, 0x5a, 0x85, 0x20, 0xbc, 0x4e, 0x6f,
  211. 0x5f, 0xe9, 0x5b, 0x1f, 0xe3, 0xc8, 0x45, 0x2b},
  212. }, {
  213. .plaintext = "abcdefghbcdefghicdefghijdefghijkefghijklfghijklmghijklmn"
  214. "hijklmnoijklmnopjklmnopqklmnopqrlmnopqrsmnopqrstnopqrstu",
  215. .psize = 112,
  216. .digest = { 0x09, 0x33, 0x0c, 0x33, 0xf7, 0x11, 0x47, 0xe8,
  217. 0x3d, 0x19, 0x2f, 0xc7, 0x82, 0xcd, 0x1b, 0x47,
  218. 0x53, 0x11, 0x1b, 0x17, 0x3b, 0x3b, 0x05, 0xd2,
  219. 0x2f, 0xa0, 0x80, 0x86, 0xe3, 0xb0, 0xf7, 0x12,
  220. 0xfc, 0xc7, 0xc7, 0x1a, 0x55, 0x7e, 0x2d, 0xb9,
  221. 0x66, 0xc3, 0xe9, 0xfa, 0x91, 0x74, 0x60, 0x39 },
  222. }, {
  223. .plaintext = "abcdefghijklmnopqrstuvwxyzabcdefghijklmnopqrstuvwxyzabcd"
  224. "efghijklmnopqrstuvwxyzabcdefghijklmnopqrstuvwxyz",
  225. .psize = 104,
  226. .digest = { 0x3d, 0x20, 0x89, 0x73, 0xab, 0x35, 0x08, 0xdb,
  227. 0xbd, 0x7e, 0x2c, 0x28, 0x62, 0xba, 0x29, 0x0a,
  228. 0xd3, 0x01, 0x0e, 0x49, 0x78, 0xc1, 0x98, 0xdc,
  229. 0x4d, 0x8f, 0xd0, 0x14, 0xe5, 0x82, 0x82, 0x3a,
  230. 0x89, 0xe1, 0x6f, 0x9b, 0x2a, 0x7b, 0xbc, 0x1a,
  231. 0xc9, 0x38, 0xe2, 0xd1, 0x99, 0xe8, 0xbe, 0xa4 },
  232. .np = 4,
  233. .tap = { 26, 26, 26, 26 }
  234. },
  235. };
  236. /*
  237. * SHA512 test vectors from from NIST and kerneli
  238. */
  239. #define SHA512_TEST_VECTORS 4
  240. static struct hash_testvec sha512_tv_template[] = {
  241. {
  242. .plaintext = "abc",
  243. .psize = 3,
  244. .digest = { 0xdd, 0xaf, 0x35, 0xa1, 0x93, 0x61, 0x7a, 0xba,
  245. 0xcc, 0x41, 0x73, 0x49, 0xae, 0x20, 0x41, 0x31,
  246. 0x12, 0xe6, 0xfa, 0x4e, 0x89, 0xa9, 0x7e, 0xa2,
  247. 0x0a, 0x9e, 0xee, 0xe6, 0x4b, 0x55, 0xd3, 0x9a,
  248. 0x21, 0x92, 0x99, 0x2a, 0x27, 0x4f, 0xc1, 0xa8,
  249. 0x36, 0xba, 0x3c, 0x23, 0xa3, 0xfe, 0xeb, 0xbd,
  250. 0x45, 0x4d, 0x44, 0x23, 0x64, 0x3c, 0xe8, 0x0e,
  251. 0x2a, 0x9a, 0xc9, 0x4f, 0xa5, 0x4c, 0xa4, 0x9f },
  252. }, {
  253. .plaintext = "abcdbcdecdefdefgefghfghighijhijkijkljklmklmnlmnomnopnopq",
  254. .psize = 56,
  255. .digest = { 0x20, 0x4a, 0x8f, 0xc6, 0xdd, 0xa8, 0x2f, 0x0a,
  256. 0x0c, 0xed, 0x7b, 0xeb, 0x8e, 0x08, 0xa4, 0x16,
  257. 0x57, 0xc1, 0x6e, 0xf4, 0x68, 0xb2, 0x28, 0xa8,
  258. 0x27, 0x9b, 0xe3, 0x31, 0xa7, 0x03, 0xc3, 0x35,
  259. 0x96, 0xfd, 0x15, 0xc1, 0x3b, 0x1b, 0x07, 0xf9,
  260. 0xaa, 0x1d, 0x3b, 0xea, 0x57, 0x78, 0x9c, 0xa0,
  261. 0x31, 0xad, 0x85, 0xc7, 0xa7, 0x1d, 0xd7, 0x03,
  262. 0x54, 0xec, 0x63, 0x12, 0x38, 0xca, 0x34, 0x45 },
  263. }, {
  264. .plaintext = "abcdefghbcdefghicdefghijdefghijkefghijklfghijklmghijklmn"
  265. "hijklmnoijklmnopjklmnopqklmnopqrlmnopqrsmnopqrstnopqrstu",
  266. .psize = 112,
  267. .digest = { 0x8e, 0x95, 0x9b, 0x75, 0xda, 0xe3, 0x13, 0xda,
  268. 0x8c, 0xf4, 0xf7, 0x28, 0x14, 0xfc, 0x14, 0x3f,
  269. 0x8f, 0x77, 0x79, 0xc6, 0xeb, 0x9f, 0x7f, 0xa1,
  270. 0x72, 0x99, 0xae, 0xad, 0xb6, 0x88, 0x90, 0x18,
  271. 0x50, 0x1d, 0x28, 0x9e, 0x49, 0x00, 0xf7, 0xe4,
  272. 0x33, 0x1b, 0x99, 0xde, 0xc4, 0xb5, 0x43, 0x3a,
  273. 0xc7, 0xd3, 0x29, 0xee, 0xb6, 0xdd, 0x26, 0x54,
  274. 0x5e, 0x96, 0xe5, 0x5b, 0x87, 0x4b, 0xe9, 0x09 },
  275. }, {
  276. .plaintext = "abcdefghijklmnopqrstuvwxyzabcdefghijklmnopqrstuvwxyzabcd"
  277. "efghijklmnopqrstuvwxyzabcdefghijklmnopqrstuvwxyz",
  278. .psize = 104,
  279. .digest = { 0x93, 0x0d, 0x0c, 0xef, 0xcb, 0x30, 0xff, 0x11,
  280. 0x33, 0xb6, 0x89, 0x81, 0x21, 0xf1, 0xcf, 0x3d,
  281. 0x27, 0x57, 0x8a, 0xfc, 0xaf, 0xe8, 0x67, 0x7c,
  282. 0x52, 0x57, 0xcf, 0x06, 0x99, 0x11, 0xf7, 0x5d,
  283. 0x8f, 0x58, 0x31, 0xb5, 0x6e, 0xbf, 0xda, 0x67,
  284. 0xb2, 0x78, 0xe6, 0x6d, 0xff, 0x8b, 0x84, 0xfe,
  285. 0x2b, 0x28, 0x70, 0xf7, 0x42, 0xa5, 0x80, 0xd8,
  286. 0xed, 0xb4, 0x19, 0x87, 0x23, 0x28, 0x50, 0xc9 },
  287. .np = 4,
  288. .tap = { 26, 26, 26, 26 }
  289. },
  290. };
  291. /*
  292. * WHIRLPOOL test vectors from Whirlpool package
  293. * by Vincent Rijmen and Paulo S. L. M. Barreto as part of the NESSIE
  294. * submission
  295. */
  296. #define WP512_TEST_VECTORS 8
  297. static struct hash_testvec wp512_tv_template[] = {
  298. {
  299. .plaintext = "",
  300. .psize = 0,
  301. .digest = { 0x19, 0xFA, 0x61, 0xD7, 0x55, 0x22, 0xA4, 0x66,
  302. 0x9B, 0x44, 0xE3, 0x9C, 0x1D, 0x2E, 0x17, 0x26,
  303. 0xC5, 0x30, 0x23, 0x21, 0x30, 0xD4, 0x07, 0xF8,
  304. 0x9A, 0xFE, 0xE0, 0x96, 0x49, 0x97, 0xF7, 0xA7,
  305. 0x3E, 0x83, 0xBE, 0x69, 0x8B, 0x28, 0x8F, 0xEB,
  306. 0xCF, 0x88, 0xE3, 0xE0, 0x3C, 0x4F, 0x07, 0x57,
  307. 0xEA, 0x89, 0x64, 0xE5, 0x9B, 0x63, 0xD9, 0x37,
  308. 0x08, 0xB1, 0x38, 0xCC, 0x42, 0xA6, 0x6E, 0xB3 },
  309. }, {
  310. .plaintext = "a",
  311. .psize = 1,
  312. .digest = { 0x8A, 0xCA, 0x26, 0x02, 0x79, 0x2A, 0xEC, 0x6F,
  313. 0x11, 0xA6, 0x72, 0x06, 0x53, 0x1F, 0xB7, 0xD7,
  314. 0xF0, 0xDF, 0xF5, 0x94, 0x13, 0x14, 0x5E, 0x69,
  315. 0x73, 0xC4, 0x50, 0x01, 0xD0, 0x08, 0x7B, 0x42,
  316. 0xD1, 0x1B, 0xC6, 0x45, 0x41, 0x3A, 0xEF, 0xF6,
  317. 0x3A, 0x42, 0x39, 0x1A, 0x39, 0x14, 0x5A, 0x59,
  318. 0x1A, 0x92, 0x20, 0x0D, 0x56, 0x01, 0x95, 0xE5,
  319. 0x3B, 0x47, 0x85, 0x84, 0xFD, 0xAE, 0x23, 0x1A },
  320. }, {
  321. .plaintext = "abc",
  322. .psize = 3,
  323. .digest = { 0x4E, 0x24, 0x48, 0xA4, 0xC6, 0xF4, 0x86, 0xBB,
  324. 0x16, 0xB6, 0x56, 0x2C, 0x73, 0xB4, 0x02, 0x0B,
  325. 0xF3, 0x04, 0x3E, 0x3A, 0x73, 0x1B, 0xCE, 0x72,
  326. 0x1A, 0xE1, 0xB3, 0x03, 0xD9, 0x7E, 0x6D, 0x4C,
  327. 0x71, 0x81, 0xEE, 0xBD, 0xB6, 0xC5, 0x7E, 0x27,
  328. 0x7D, 0x0E, 0x34, 0x95, 0x71, 0x14, 0xCB, 0xD6,
  329. 0xC7, 0x97, 0xFC, 0x9D, 0x95, 0xD8, 0xB5, 0x82,
  330. 0xD2, 0x25, 0x29, 0x20, 0x76, 0xD4, 0xEE, 0xF5 },
  331. }, {
  332. .plaintext = "message digest",
  333. .psize = 14,
  334. .digest = { 0x37, 0x8C, 0x84, 0xA4, 0x12, 0x6E, 0x2D, 0xC6,
  335. 0xE5, 0x6D, 0xCC, 0x74, 0x58, 0x37, 0x7A, 0xAC,
  336. 0x83, 0x8D, 0x00, 0x03, 0x22, 0x30, 0xF5, 0x3C,
  337. 0xE1, 0xF5, 0x70, 0x0C, 0x0F, 0xFB, 0x4D, 0x3B,
  338. 0x84, 0x21, 0x55, 0x76, 0x59, 0xEF, 0x55, 0xC1,
  339. 0x06, 0xB4, 0xB5, 0x2A, 0xC5, 0xA4, 0xAA, 0xA6,
  340. 0x92, 0xED, 0x92, 0x00, 0x52, 0x83, 0x8F, 0x33,
  341. 0x62, 0xE8, 0x6D, 0xBD, 0x37, 0xA8, 0x90, 0x3E },
  342. }, {
  343. .plaintext = "abcdefghijklmnopqrstuvwxyz",
  344. .psize = 26,
  345. .digest = { 0xF1, 0xD7, 0x54, 0x66, 0x26, 0x36, 0xFF, 0xE9,
  346. 0x2C, 0x82, 0xEB, 0xB9, 0x21, 0x2A, 0x48, 0x4A,
  347. 0x8D, 0x38, 0x63, 0x1E, 0xAD, 0x42, 0x38, 0xF5,
  348. 0x44, 0x2E, 0xE1, 0x3B, 0x80, 0x54, 0xE4, 0x1B,
  349. 0x08, 0xBF, 0x2A, 0x92, 0x51, 0xC3, 0x0B, 0x6A,
  350. 0x0B, 0x8A, 0xAE, 0x86, 0x17, 0x7A, 0xB4, 0xA6,
  351. 0xF6, 0x8F, 0x67, 0x3E, 0x72, 0x07, 0x86, 0x5D,
  352. 0x5D, 0x98, 0x19, 0xA3, 0xDB, 0xA4, 0xEB, 0x3B },
  353. }, {
  354. .plaintext = "ABCDEFGHIJKLMNOPQRSTUVWXYZ"
  355. "abcdefghijklmnopqrstuvwxyz0123456789",
  356. .psize = 62,
  357. .digest = { 0xDC, 0x37, 0xE0, 0x08, 0xCF, 0x9E, 0xE6, 0x9B,
  358. 0xF1, 0x1F, 0x00, 0xED, 0x9A, 0xBA, 0x26, 0x90,
  359. 0x1D, 0xD7, 0xC2, 0x8C, 0xDE, 0xC0, 0x66, 0xCC,
  360. 0x6A, 0xF4, 0x2E, 0x40, 0xF8, 0x2F, 0x3A, 0x1E,
  361. 0x08, 0xEB, 0xA2, 0x66, 0x29, 0x12, 0x9D, 0x8F,
  362. 0xB7, 0xCB, 0x57, 0x21, 0x1B, 0x92, 0x81, 0xA6,
  363. 0x55, 0x17, 0xCC, 0x87, 0x9D, 0x7B, 0x96, 0x21,
  364. 0x42, 0xC6, 0x5F, 0x5A, 0x7A, 0xF0, 0x14, 0x67 },
  365. }, {
  366. .plaintext = "1234567890123456789012345678901234567890"
  367. "1234567890123456789012345678901234567890",
  368. .psize = 80,
  369. .digest = { 0x46, 0x6E, 0xF1, 0x8B, 0xAB, 0xB0, 0x15, 0x4D,
  370. 0x25, 0xB9, 0xD3, 0x8A, 0x64, 0x14, 0xF5, 0xC0,
  371. 0x87, 0x84, 0x37, 0x2B, 0xCC, 0xB2, 0x04, 0xD6,
  372. 0x54, 0x9C, 0x4A, 0xFA, 0xDB, 0x60, 0x14, 0x29,
  373. 0x4D, 0x5B, 0xD8, 0xDF, 0x2A, 0x6C, 0x44, 0xE5,
  374. 0x38, 0xCD, 0x04, 0x7B, 0x26, 0x81, 0xA5, 0x1A,
  375. 0x2C, 0x60, 0x48, 0x1E, 0x88, 0xC5, 0xA2, 0x0B,
  376. 0x2C, 0x2A, 0x80, 0xCF, 0x3A, 0x9A, 0x08, 0x3B },
  377. }, {
  378. .plaintext = "abcdbcdecdefdefgefghfghighijhijk",
  379. .psize = 32,
  380. .digest = { 0x2A, 0x98, 0x7E, 0xA4, 0x0F, 0x91, 0x70, 0x61,
  381. 0xF5, 0xD6, 0xF0, 0xA0, 0xE4, 0x64, 0x4F, 0x48,
  382. 0x8A, 0x7A, 0x5A, 0x52, 0xDE, 0xEE, 0x65, 0x62,
  383. 0x07, 0xC5, 0x62, 0xF9, 0x88, 0xE9, 0x5C, 0x69,
  384. 0x16, 0xBD, 0xC8, 0x03, 0x1B, 0xC5, 0xBE, 0x1B,
  385. 0x7B, 0x94, 0x76, 0x39, 0xFE, 0x05, 0x0B, 0x56,
  386. 0x93, 0x9B, 0xAA, 0xA0, 0xAD, 0xFF, 0x9A, 0xE6,
  387. 0x74, 0x5B, 0x7B, 0x18, 0x1C, 0x3B, 0xE3, 0xFD },
  388. },
  389. };
  390. #define WP384_TEST_VECTORS 8
  391. static struct hash_testvec wp384_tv_template[] = {
  392. {
  393. .plaintext = "",
  394. .psize = 0,
  395. .digest = { 0x19, 0xFA, 0x61, 0xD7, 0x55, 0x22, 0xA4, 0x66,
  396. 0x9B, 0x44, 0xE3, 0x9C, 0x1D, 0x2E, 0x17, 0x26,
  397. 0xC5, 0x30, 0x23, 0x21, 0x30, 0xD4, 0x07, 0xF8,
  398. 0x9A, 0xFE, 0xE0, 0x96, 0x49, 0x97, 0xF7, 0xA7,
  399. 0x3E, 0x83, 0xBE, 0x69, 0x8B, 0x28, 0x8F, 0xEB,
  400. 0xCF, 0x88, 0xE3, 0xE0, 0x3C, 0x4F, 0x07, 0x57 },
  401. }, {
  402. .plaintext = "a",
  403. .psize = 1,
  404. .digest = { 0x8A, 0xCA, 0x26, 0x02, 0x79, 0x2A, 0xEC, 0x6F,
  405. 0x11, 0xA6, 0x72, 0x06, 0x53, 0x1F, 0xB7, 0xD7,
  406. 0xF0, 0xDF, 0xF5, 0x94, 0x13, 0x14, 0x5E, 0x69,
  407. 0x73, 0xC4, 0x50, 0x01, 0xD0, 0x08, 0x7B, 0x42,
  408. 0xD1, 0x1B, 0xC6, 0x45, 0x41, 0x3A, 0xEF, 0xF6,
  409. 0x3A, 0x42, 0x39, 0x1A, 0x39, 0x14, 0x5A, 0x59 },
  410. }, {
  411. .plaintext = "abc",
  412. .psize = 3,
  413. .digest = { 0x4E, 0x24, 0x48, 0xA4, 0xC6, 0xF4, 0x86, 0xBB,
  414. 0x16, 0xB6, 0x56, 0x2C, 0x73, 0xB4, 0x02, 0x0B,
  415. 0xF3, 0x04, 0x3E, 0x3A, 0x73, 0x1B, 0xCE, 0x72,
  416. 0x1A, 0xE1, 0xB3, 0x03, 0xD9, 0x7E, 0x6D, 0x4C,
  417. 0x71, 0x81, 0xEE, 0xBD, 0xB6, 0xC5, 0x7E, 0x27,
  418. 0x7D, 0x0E, 0x34, 0x95, 0x71, 0x14, 0xCB, 0xD6 },
  419. }, {
  420. .plaintext = "message digest",
  421. .psize = 14,
  422. .digest = { 0x37, 0x8C, 0x84, 0xA4, 0x12, 0x6E, 0x2D, 0xC6,
  423. 0xE5, 0x6D, 0xCC, 0x74, 0x58, 0x37, 0x7A, 0xAC,
  424. 0x83, 0x8D, 0x00, 0x03, 0x22, 0x30, 0xF5, 0x3C,
  425. 0xE1, 0xF5, 0x70, 0x0C, 0x0F, 0xFB, 0x4D, 0x3B,
  426. 0x84, 0x21, 0x55, 0x76, 0x59, 0xEF, 0x55, 0xC1,
  427. 0x06, 0xB4, 0xB5, 0x2A, 0xC5, 0xA4, 0xAA, 0xA6 },
  428. }, {
  429. .plaintext = "abcdefghijklmnopqrstuvwxyz",
  430. .psize = 26,
  431. .digest = { 0xF1, 0xD7, 0x54, 0x66, 0x26, 0x36, 0xFF, 0xE9,
  432. 0x2C, 0x82, 0xEB, 0xB9, 0x21, 0x2A, 0x48, 0x4A,
  433. 0x8D, 0x38, 0x63, 0x1E, 0xAD, 0x42, 0x38, 0xF5,
  434. 0x44, 0x2E, 0xE1, 0x3B, 0x80, 0x54, 0xE4, 0x1B,
  435. 0x08, 0xBF, 0x2A, 0x92, 0x51, 0xC3, 0x0B, 0x6A,
  436. 0x0B, 0x8A, 0xAE, 0x86, 0x17, 0x7A, 0xB4, 0xA6 },
  437. }, {
  438. .plaintext = "ABCDEFGHIJKLMNOPQRSTUVWXYZ"
  439. "abcdefghijklmnopqrstuvwxyz0123456789",
  440. .psize = 62,
  441. .digest = { 0xDC, 0x37, 0xE0, 0x08, 0xCF, 0x9E, 0xE6, 0x9B,
  442. 0xF1, 0x1F, 0x00, 0xED, 0x9A, 0xBA, 0x26, 0x90,
  443. 0x1D, 0xD7, 0xC2, 0x8C, 0xDE, 0xC0, 0x66, 0xCC,
  444. 0x6A, 0xF4, 0x2E, 0x40, 0xF8, 0x2F, 0x3A, 0x1E,
  445. 0x08, 0xEB, 0xA2, 0x66, 0x29, 0x12, 0x9D, 0x8F,
  446. 0xB7, 0xCB, 0x57, 0x21, 0x1B, 0x92, 0x81, 0xA6 },
  447. }, {
  448. .plaintext = "1234567890123456789012345678901234567890"
  449. "1234567890123456789012345678901234567890",
  450. .psize = 80,
  451. .digest = { 0x46, 0x6E, 0xF1, 0x8B, 0xAB, 0xB0, 0x15, 0x4D,
  452. 0x25, 0xB9, 0xD3, 0x8A, 0x64, 0x14, 0xF5, 0xC0,
  453. 0x87, 0x84, 0x37, 0x2B, 0xCC, 0xB2, 0x04, 0xD6,
  454. 0x54, 0x9C, 0x4A, 0xFA, 0xDB, 0x60, 0x14, 0x29,
  455. 0x4D, 0x5B, 0xD8, 0xDF, 0x2A, 0x6C, 0x44, 0xE5,
  456. 0x38, 0xCD, 0x04, 0x7B, 0x26, 0x81, 0xA5, 0x1A },
  457. }, {
  458. .plaintext = "abcdbcdecdefdefgefghfghighijhijk",
  459. .psize = 32,
  460. .digest = { 0x2A, 0x98, 0x7E, 0xA4, 0x0F, 0x91, 0x70, 0x61,
  461. 0xF5, 0xD6, 0xF0, 0xA0, 0xE4, 0x64, 0x4F, 0x48,
  462. 0x8A, 0x7A, 0x5A, 0x52, 0xDE, 0xEE, 0x65, 0x62,
  463. 0x07, 0xC5, 0x62, 0xF9, 0x88, 0xE9, 0x5C, 0x69,
  464. 0x16, 0xBD, 0xC8, 0x03, 0x1B, 0xC5, 0xBE, 0x1B,
  465. 0x7B, 0x94, 0x76, 0x39, 0xFE, 0x05, 0x0B, 0x56 },
  466. },
  467. };
  468. #define WP256_TEST_VECTORS 8
  469. static struct hash_testvec wp256_tv_template[] = {
  470. {
  471. .plaintext = "",
  472. .psize = 0,
  473. .digest = { 0x19, 0xFA, 0x61, 0xD7, 0x55, 0x22, 0xA4, 0x66,
  474. 0x9B, 0x44, 0xE3, 0x9C, 0x1D, 0x2E, 0x17, 0x26,
  475. 0xC5, 0x30, 0x23, 0x21, 0x30, 0xD4, 0x07, 0xF8,
  476. 0x9A, 0xFE, 0xE0, 0x96, 0x49, 0x97, 0xF7, 0xA7 },
  477. }, {
  478. .plaintext = "a",
  479. .psize = 1,
  480. .digest = { 0x8A, 0xCA, 0x26, 0x02, 0x79, 0x2A, 0xEC, 0x6F,
  481. 0x11, 0xA6, 0x72, 0x06, 0x53, 0x1F, 0xB7, 0xD7,
  482. 0xF0, 0xDF, 0xF5, 0x94, 0x13, 0x14, 0x5E, 0x69,
  483. 0x73, 0xC4, 0x50, 0x01, 0xD0, 0x08, 0x7B, 0x42 },
  484. }, {
  485. .plaintext = "abc",
  486. .psize = 3,
  487. .digest = { 0x4E, 0x24, 0x48, 0xA4, 0xC6, 0xF4, 0x86, 0xBB,
  488. 0x16, 0xB6, 0x56, 0x2C, 0x73, 0xB4, 0x02, 0x0B,
  489. 0xF3, 0x04, 0x3E, 0x3A, 0x73, 0x1B, 0xCE, 0x72,
  490. 0x1A, 0xE1, 0xB3, 0x03, 0xD9, 0x7E, 0x6D, 0x4C },
  491. }, {
  492. .plaintext = "message digest",
  493. .psize = 14,
  494. .digest = { 0x37, 0x8C, 0x84, 0xA4, 0x12, 0x6E, 0x2D, 0xC6,
  495. 0xE5, 0x6D, 0xCC, 0x74, 0x58, 0x37, 0x7A, 0xAC,
  496. 0x83, 0x8D, 0x00, 0x03, 0x22, 0x30, 0xF5, 0x3C,
  497. 0xE1, 0xF5, 0x70, 0x0C, 0x0F, 0xFB, 0x4D, 0x3B },
  498. }, {
  499. .plaintext = "abcdefghijklmnopqrstuvwxyz",
  500. .psize = 26,
  501. .digest = { 0xF1, 0xD7, 0x54, 0x66, 0x26, 0x36, 0xFF, 0xE9,
  502. 0x2C, 0x82, 0xEB, 0xB9, 0x21, 0x2A, 0x48, 0x4A,
  503. 0x8D, 0x38, 0x63, 0x1E, 0xAD, 0x42, 0x38, 0xF5,
  504. 0x44, 0x2E, 0xE1, 0x3B, 0x80, 0x54, 0xE4, 0x1B },
  505. }, {
  506. .plaintext = "ABCDEFGHIJKLMNOPQRSTUVWXYZ"
  507. "abcdefghijklmnopqrstuvwxyz0123456789",
  508. .psize = 62,
  509. .digest = { 0xDC, 0x37, 0xE0, 0x08, 0xCF, 0x9E, 0xE6, 0x9B,
  510. 0xF1, 0x1F, 0x00, 0xED, 0x9A, 0xBA, 0x26, 0x90,
  511. 0x1D, 0xD7, 0xC2, 0x8C, 0xDE, 0xC0, 0x66, 0xCC,
  512. 0x6A, 0xF4, 0x2E, 0x40, 0xF8, 0x2F, 0x3A, 0x1E },
  513. }, {
  514. .plaintext = "1234567890123456789012345678901234567890"
  515. "1234567890123456789012345678901234567890",
  516. .psize = 80,
  517. .digest = { 0x46, 0x6E, 0xF1, 0x8B, 0xAB, 0xB0, 0x15, 0x4D,
  518. 0x25, 0xB9, 0xD3, 0x8A, 0x64, 0x14, 0xF5, 0xC0,
  519. 0x87, 0x84, 0x37, 0x2B, 0xCC, 0xB2, 0x04, 0xD6,
  520. 0x54, 0x9C, 0x4A, 0xFA, 0xDB, 0x60, 0x14, 0x29 },
  521. }, {
  522. .plaintext = "abcdbcdecdefdefgefghfghighijhijk",
  523. .psize = 32,
  524. .digest = { 0x2A, 0x98, 0x7E, 0xA4, 0x0F, 0x91, 0x70, 0x61,
  525. 0xF5, 0xD6, 0xF0, 0xA0, 0xE4, 0x64, 0x4F, 0x48,
  526. 0x8A, 0x7A, 0x5A, 0x52, 0xDE, 0xEE, 0x65, 0x62,
  527. 0x07, 0xC5, 0x62, 0xF9, 0x88, 0xE9, 0x5C, 0x69 },
  528. },
  529. };
  530. /*
  531. * TIGER test vectors from Tiger website
  532. */
  533. #define TGR192_TEST_VECTORS 6
  534. static struct hash_testvec tgr192_tv_template[] = {
  535. {
  536. .plaintext = "",
  537. .psize = 0,
  538. .digest = { 0x24, 0xf0, 0x13, 0x0c, 0x63, 0xac, 0x93, 0x32,
  539. 0x16, 0x16, 0x6e, 0x76, 0xb1, 0xbb, 0x92, 0x5f,
  540. 0xf3, 0x73, 0xde, 0x2d, 0x49, 0x58, 0x4e, 0x7a },
  541. }, {
  542. .plaintext = "abc",
  543. .psize = 3,
  544. .digest = { 0xf2, 0x58, 0xc1, 0xe8, 0x84, 0x14, 0xab, 0x2a,
  545. 0x52, 0x7a, 0xb5, 0x41, 0xff, 0xc5, 0xb8, 0xbf,
  546. 0x93, 0x5f, 0x7b, 0x95, 0x1c, 0x13, 0x29, 0x51 },
  547. }, {
  548. .plaintext = "Tiger",
  549. .psize = 5,
  550. .digest = { 0x9f, 0x00, 0xf5, 0x99, 0x07, 0x23, 0x00, 0xdd,
  551. 0x27, 0x6a, 0xbb, 0x38, 0xc8, 0xeb, 0x6d, 0xec,
  552. 0x37, 0x79, 0x0c, 0x11, 0x6f, 0x9d, 0x2b, 0xdf },
  553. }, {
  554. .plaintext = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+-",
  555. .psize = 64,
  556. .digest = { 0x87, 0xfb, 0x2a, 0x90, 0x83, 0x85, 0x1c, 0xf7,
  557. 0x47, 0x0d, 0x2c, 0xf8, 0x10, 0xe6, 0xdf, 0x9e,
  558. 0xb5, 0x86, 0x44, 0x50, 0x34, 0xa5, 0xa3, 0x86 },
  559. }, {
  560. .plaintext = "ABCDEFGHIJKLMNOPQRSTUVWXYZ=abcdefghijklmnopqrstuvwxyz+0123456789",
  561. .psize = 64,
  562. .digest = { 0x46, 0x7d, 0xb8, 0x08, 0x63, 0xeb, 0xce, 0x48,
  563. 0x8d, 0xf1, 0xcd, 0x12, 0x61, 0x65, 0x5d, 0xe9,
  564. 0x57, 0x89, 0x65, 0x65, 0x97, 0x5f, 0x91, 0x97 },
  565. }, {
  566. .plaintext = "Tiger - A Fast New Hash Function, "
  567. "by Ross Anderson and Eli Biham, "
  568. "proceedings of Fast Software Encryption 3, "
  569. "Cambridge, 1996.",
  570. .psize = 125,
  571. .digest = { 0x3d, 0x9a, 0xeb, 0x03, 0xd1, 0xbd, 0x1a, 0x63,
  572. 0x57, 0xb2, 0x77, 0x4d, 0xfd, 0x6d, 0x5b, 0x24,
  573. 0xdd, 0x68, 0x15, 0x1d, 0x50, 0x39, 0x74, 0xfc },
  574. },
  575. };
  576. #define TGR160_TEST_VECTORS 6
  577. static struct hash_testvec tgr160_tv_template[] = {
  578. {
  579. .plaintext = "",
  580. .psize = 0,
  581. .digest = { 0x24, 0xf0, 0x13, 0x0c, 0x63, 0xac, 0x93, 0x32,
  582. 0x16, 0x16, 0x6e, 0x76, 0xb1, 0xbb, 0x92, 0x5f,
  583. 0xf3, 0x73, 0xde, 0x2d },
  584. }, {
  585. .plaintext = "abc",
  586. .psize = 3,
  587. .digest = { 0xf2, 0x58, 0xc1, 0xe8, 0x84, 0x14, 0xab, 0x2a,
  588. 0x52, 0x7a, 0xb5, 0x41, 0xff, 0xc5, 0xb8, 0xbf,
  589. 0x93, 0x5f, 0x7b, 0x95 },
  590. }, {
  591. .plaintext = "Tiger",
  592. .psize = 5,
  593. .digest = { 0x9f, 0x00, 0xf5, 0x99, 0x07, 0x23, 0x00, 0xdd,
  594. 0x27, 0x6a, 0xbb, 0x38, 0xc8, 0xeb, 0x6d, 0xec,
  595. 0x37, 0x79, 0x0c, 0x11 },
  596. }, {
  597. .plaintext = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+-",
  598. .psize = 64,
  599. .digest = { 0x87, 0xfb, 0x2a, 0x90, 0x83, 0x85, 0x1c, 0xf7,
  600. 0x47, 0x0d, 0x2c, 0xf8, 0x10, 0xe6, 0xdf, 0x9e,
  601. 0xb5, 0x86, 0x44, 0x50 },
  602. }, {
  603. .plaintext = "ABCDEFGHIJKLMNOPQRSTUVWXYZ=abcdefghijklmnopqrstuvwxyz+0123456789",
  604. .psize = 64,
  605. .digest = { 0x46, 0x7d, 0xb8, 0x08, 0x63, 0xeb, 0xce, 0x48,
  606. 0x8d, 0xf1, 0xcd, 0x12, 0x61, 0x65, 0x5d, 0xe9,
  607. 0x57, 0x89, 0x65, 0x65 },
  608. }, {
  609. .plaintext = "Tiger - A Fast New Hash Function, "
  610. "by Ross Anderson and Eli Biham, "
  611. "proceedings of Fast Software Encryption 3, "
  612. "Cambridge, 1996.",
  613. .psize = 125,
  614. .digest = { 0x3d, 0x9a, 0xeb, 0x03, 0xd1, 0xbd, 0x1a, 0x63,
  615. 0x57, 0xb2, 0x77, 0x4d, 0xfd, 0x6d, 0x5b, 0x24,
  616. 0xdd, 0x68, 0x15, 0x1d },
  617. },
  618. };
  619. #define TGR128_TEST_VECTORS 6
  620. static struct hash_testvec tgr128_tv_template[] = {
  621. {
  622. .plaintext = "",
  623. .psize = 0,
  624. .digest = { 0x24, 0xf0, 0x13, 0x0c, 0x63, 0xac, 0x93, 0x32,
  625. 0x16, 0x16, 0x6e, 0x76, 0xb1, 0xbb, 0x92, 0x5f },
  626. }, {
  627. .plaintext = "abc",
  628. .psize = 3,
  629. .digest = { 0xf2, 0x58, 0xc1, 0xe8, 0x84, 0x14, 0xab, 0x2a,
  630. 0x52, 0x7a, 0xb5, 0x41, 0xff, 0xc5, 0xb8, 0xbf },
  631. }, {
  632. .plaintext = "Tiger",
  633. .psize = 5,
  634. .digest = { 0x9f, 0x00, 0xf5, 0x99, 0x07, 0x23, 0x00, 0xdd,
  635. 0x27, 0x6a, 0xbb, 0x38, 0xc8, 0xeb, 0x6d, 0xec },
  636. }, {
  637. .plaintext = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+-",
  638. .psize = 64,
  639. .digest = { 0x87, 0xfb, 0x2a, 0x90, 0x83, 0x85, 0x1c, 0xf7,
  640. 0x47, 0x0d, 0x2c, 0xf8, 0x10, 0xe6, 0xdf, 0x9e },
  641. }, {
  642. .plaintext = "ABCDEFGHIJKLMNOPQRSTUVWXYZ=abcdefghijklmnopqrstuvwxyz+0123456789",
  643. .psize = 64,
  644. .digest = { 0x46, 0x7d, 0xb8, 0x08, 0x63, 0xeb, 0xce, 0x48,
  645. 0x8d, 0xf1, 0xcd, 0x12, 0x61, 0x65, 0x5d, 0xe9 },
  646. }, {
  647. .plaintext = "Tiger - A Fast New Hash Function, "
  648. "by Ross Anderson and Eli Biham, "
  649. "proceedings of Fast Software Encryption 3, "
  650. "Cambridge, 1996.",
  651. .psize = 125,
  652. .digest = { 0x3d, 0x9a, 0xeb, 0x03, 0xd1, 0xbd, 0x1a, 0x63,
  653. 0x57, 0xb2, 0x77, 0x4d, 0xfd, 0x6d, 0x5b, 0x24 },
  654. },
  655. };
  656. #ifdef CONFIG_CRYPTO_HMAC
  657. /*
  658. * HMAC-MD5 test vectors from RFC2202
  659. * (These need to be fixed to not use strlen).
  660. */
  661. #define HMAC_MD5_TEST_VECTORS 7
  662. static struct hmac_testvec hmac_md5_tv_template[] =
  663. {
  664. {
  665. .key = { [0 ... 15] = 0x0b },
  666. .ksize = 16,
  667. .plaintext = "Hi There",
  668. .psize = 8,
  669. .digest = { 0x92, 0x94, 0x72, 0x7a, 0x36, 0x38, 0xbb, 0x1c,
  670. 0x13, 0xf4, 0x8e, 0xf8, 0x15, 0x8b, 0xfc, 0x9d },
  671. }, {
  672. .key = { 'J', 'e', 'f', 'e' },
  673. .ksize = 4,
  674. .plaintext = "what do ya want for nothing?",
  675. .psize = 28,
  676. .digest = { 0x75, 0x0c, 0x78, 0x3e, 0x6a, 0xb0, 0xb5, 0x03,
  677. 0xea, 0xa8, 0x6e, 0x31, 0x0a, 0x5d, 0xb7, 0x38 },
  678. .np = 2,
  679. .tap = {14, 14}
  680. }, {
  681. .key = { [0 ... 15] = 0xaa },
  682. .ksize = 16,
  683. .plaintext = { [0 ... 49] = 0xdd },
  684. .psize = 50,
  685. .digest = { 0x56, 0xbe, 0x34, 0x52, 0x1d, 0x14, 0x4c, 0x88,
  686. 0xdb, 0xb8, 0xc7, 0x33, 0xf0, 0xe8, 0xb3, 0xf6 },
  687. }, {
  688. .key = { 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07, 0x08,
  689. 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f, 0x10,
  690. 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17, 0x18, 0x19, },
  691. .ksize = 25,
  692. .plaintext = { [0 ... 49] = 0xcd },
  693. .psize = 50,
  694. .digest = { 0x69, 0x7e, 0xaf, 0x0a, 0xca, 0x3a, 0x3a, 0xea,
  695. 0x3a, 0x75, 0x16, 0x47, 0x46, 0xff, 0xaa, 0x79 },
  696. }, {
  697. .key = { [0 ... 15] = 0x0c },
  698. .ksize = 16,
  699. .plaintext = "Test With Truncation",
  700. .psize = 20,
  701. .digest = { 0x56, 0x46, 0x1e, 0xf2, 0x34, 0x2e, 0xdc, 0x00,
  702. 0xf9, 0xba, 0xb9, 0x95, 0x69, 0x0e, 0xfd, 0x4c },
  703. }, {
  704. .key = { [0 ... 79] = 0xaa },
  705. .ksize = 80,
  706. .plaintext = "Test Using Larger Than Block-Size Key - Hash Key First",
  707. .psize = 54,
  708. .digest = { 0x6b, 0x1a, 0xb7, 0xfe, 0x4b, 0xd7, 0xbf, 0x8f,
  709. 0x0b, 0x62, 0xe6, 0xce, 0x61, 0xb9, 0xd0, 0xcd },
  710. }, {
  711. .key = { [0 ... 79] = 0xaa },
  712. .ksize = 80,
  713. .plaintext = "Test Using Larger Than Block-Size Key and Larger Than One "
  714. "Block-Size Data",
  715. .psize = 73,
  716. .digest = { 0x6f, 0x63, 0x0f, 0xad, 0x67, 0xcd, 0xa0, 0xee,
  717. 0x1f, 0xb1, 0xf5, 0x62, 0xdb, 0x3a, 0xa5, 0x3e },
  718. },
  719. };
  720. /*
  721. * HMAC-SHA1 test vectors from RFC2202
  722. */
  723. #define HMAC_SHA1_TEST_VECTORS 7
  724. static struct hmac_testvec hmac_sha1_tv_template[] = {
  725. {
  726. .key = { [0 ... 19] = 0x0b },
  727. .ksize = 20,
  728. .plaintext = "Hi There",
  729. .psize = 8,
  730. .digest = { 0xb6, 0x17, 0x31, 0x86, 0x55, 0x05, 0x72, 0x64,
  731. 0xe2, 0x8b, 0xc0, 0xb6, 0xfb, 0x37, 0x8c, 0x8e, 0xf1,
  732. 0x46, 0xbe },
  733. }, {
  734. .key = { 'J', 'e', 'f', 'e' },
  735. .ksize = 4,
  736. .plaintext = "what do ya want for nothing?",
  737. .psize = 28,
  738. .digest = { 0xef, 0xfc, 0xdf, 0x6a, 0xe5, 0xeb, 0x2f, 0xa2, 0xd2, 0x74,
  739. 0x16, 0xd5, 0xf1, 0x84, 0xdf, 0x9c, 0x25, 0x9a, 0x7c, 0x79 },
  740. .np = 2,
  741. .tap = { 14, 14 }
  742. }, {
  743. .key = { [0 ... 19] = 0xaa },
  744. .ksize = 20,
  745. .plaintext = { [0 ... 49] = 0xdd },
  746. .psize = 50,
  747. .digest = { 0x12, 0x5d, 0x73, 0x42, 0xb9, 0xac, 0x11, 0xcd, 0x91, 0xa3,
  748. 0x9a, 0xf4, 0x8a, 0xa1, 0x7b, 0x4f, 0x63, 0xf1, 0x75, 0xd3 },
  749. }, {
  750. .key = { 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07, 0x08,
  751. 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f, 0x10,
  752. 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17, 0x18, 0x19 },
  753. .ksize = 25,
  754. .plaintext = { [0 ... 49] = 0xcd },
  755. .psize = 50,
  756. .digest = { 0x4c, 0x90, 0x07, 0xf4, 0x02, 0x62, 0x50, 0xc6, 0xbc, 0x84,
  757. 0x14, 0xf9, 0xbf, 0x50, 0xc8, 0x6c, 0x2d, 0x72, 0x35, 0xda },
  758. }, {
  759. .key = { [0 ... 19] = 0x0c },
  760. .ksize = 20,
  761. .plaintext = "Test With Truncation",
  762. .psize = 20,
  763. .digest = { 0x4c, 0x1a, 0x03, 0x42, 0x4b, 0x55, 0xe0, 0x7f, 0xe7, 0xf2,
  764. 0x7b, 0xe1, 0xd5, 0x8b, 0xb9, 0x32, 0x4a, 0x9a, 0x5a, 0x04 },
  765. }, {
  766. .key = { [0 ... 79] = 0xaa },
  767. .ksize = 80,
  768. .plaintext = "Test Using Larger Than Block-Size Key - Hash Key First",
  769. .psize = 54,
  770. .digest = { 0xaa, 0x4a, 0xe5, 0xe1, 0x52, 0x72, 0xd0, 0x0e, 0x95, 0x70,
  771. 0x56, 0x37, 0xce, 0x8a, 0x3b, 0x55, 0xed, 0x40, 0x21, 0x12 },
  772. }, {
  773. .key = { [0 ... 79] = 0xaa },
  774. .ksize = 80,
  775. .plaintext = "Test Using Larger Than Block-Size Key and Larger Than One "
  776. "Block-Size Data",
  777. .psize = 73,
  778. .digest = { 0xe8, 0xe9, 0x9d, 0x0f, 0x45, 0x23, 0x7d, 0x78, 0x6d, 0x6b,
  779. 0xba, 0xa7, 0x96, 0x5c, 0x78, 0x08, 0xbb, 0xff, 0x1a, 0x91 },
  780. },
  781. };
  782. /*
  783. * HMAC-SHA256 test vectors from
  784. * draft-ietf-ipsec-ciph-sha-256-01.txt
  785. */
  786. #define HMAC_SHA256_TEST_VECTORS 10
  787. static struct hmac_testvec hmac_sha256_tv_template[] = {
  788. {
  789. .key = { 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07, 0x08,
  790. 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f, 0x10,
  791. 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17, 0x18,
  792. 0x19, 0x1a, 0x1b, 0x1c, 0x1d, 0x1e, 0x1f, 0x20},
  793. .ksize = 32,
  794. .plaintext = "abc",
  795. .psize = 3,
  796. .digest = { 0xa2, 0x1b, 0x1f, 0x5d, 0x4c, 0xf4, 0xf7, 0x3a,
  797. 0x4d, 0xd9, 0x39, 0x75, 0x0f, 0x7a, 0x06, 0x6a,
  798. 0x7f, 0x98, 0xcc, 0x13, 0x1c, 0xb1, 0x6a, 0x66,
  799. 0x92, 0x75, 0x90, 0x21, 0xcf, 0xab, 0x81, 0x81 },
  800. }, {
  801. .key = { 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07, 0x08,
  802. 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f, 0x10,
  803. 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17, 0x18,
  804. 0x19, 0x1a, 0x1b, 0x1c, 0x1d, 0x1e, 0x1f, 0x20 },
  805. .ksize = 32,
  806. .plaintext = "abcdbcdecdefdefgefghfghighijhijkijkljklmklmnlmnomnopnopq",
  807. .psize = 56,
  808. .digest = { 0x10, 0x4f, 0xdc, 0x12, 0x57, 0x32, 0x8f, 0x08,
  809. 0x18, 0x4b, 0xa7, 0x31, 0x31, 0xc5, 0x3c, 0xae,
  810. 0xe6, 0x98, 0xe3, 0x61, 0x19, 0x42, 0x11, 0x49,
  811. 0xea, 0x8c, 0x71, 0x24, 0x56, 0x69, 0x7d, 0x30 },
  812. }, {
  813. .key = { 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07, 0x08,
  814. 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f, 0x10,
  815. 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17, 0x18,
  816. 0x19, 0x1a, 0x1b, 0x1c, 0x1d, 0x1e, 0x1f, 0x20 },
  817. .ksize = 32,
  818. .plaintext = "abcdbcdecdefdefgefghfghighijhijkijkljklmklmnlmnomnopnopq"
  819. "abcdbcdecdefdefgefghfghighijhijkijkljklmklmnlmnomnopnopq",
  820. .psize = 112,
  821. .digest = { 0x47, 0x03, 0x05, 0xfc, 0x7e, 0x40, 0xfe, 0x34,
  822. 0xd3, 0xee, 0xb3, 0xe7, 0x73, 0xd9, 0x5a, 0xab,
  823. 0x73, 0xac, 0xf0, 0xfd, 0x06, 0x04, 0x47, 0xa5,
  824. 0xeb, 0x45, 0x95, 0xbf, 0x33, 0xa9, 0xd1, 0xa3 },
  825. }, {
  826. .key = { [0 ... 31] = 0x0b },
  827. .ksize = 32,
  828. .plaintext = "Hi There",
  829. .psize = 8,
  830. .digest = { 0x19, 0x8a, 0x60, 0x7e, 0xb4, 0x4b, 0xfb, 0xc6,
  831. 0x99, 0x03, 0xa0, 0xf1, 0xcf, 0x2b, 0xbd, 0xc5,
  832. 0xba, 0x0a, 0xa3, 0xf3, 0xd9, 0xae, 0x3c, 0x1c,
  833. 0x7a, 0x3b, 0x16, 0x96, 0xa0, 0xb6, 0x8c, 0xf7 },
  834. }, {
  835. .key = "Jefe",
  836. .ksize = 4,
  837. .plaintext = "what do ya want for nothing?",
  838. .psize = 28,
  839. .digest = { 0x5b, 0xdc, 0xc1, 0x46, 0xbf, 0x60, 0x75, 0x4e,
  840. 0x6a, 0x04, 0x24, 0x26, 0x08, 0x95, 0x75, 0xc7,
  841. 0x5a, 0x00, 0x3f, 0x08, 0x9d, 0x27, 0x39, 0x83,
  842. 0x9d, 0xec, 0x58, 0xb9, 0x64, 0xec, 0x38, 0x43 },
  843. .np = 2,
  844. .tap = { 14, 14 }
  845. }, {
  846. .key = { [0 ... 31] = 0xaa },
  847. .ksize = 32,
  848. .plaintext = { [0 ... 49] = 0xdd },
  849. .psize = 50,
  850. .digest = { 0xcd, 0xcb, 0x12, 0x20, 0xd1, 0xec, 0xcc, 0xea,
  851. 0x91, 0xe5, 0x3a, 0xba, 0x30, 0x92, 0xf9, 0x62,
  852. 0xe5, 0x49, 0xfe, 0x6c, 0xe9, 0xed, 0x7f, 0xdc,
  853. 0x43, 0x19, 0x1f, 0xbd, 0xe4, 0x5c, 0x30, 0xb0 },
  854. }, {
  855. .key = { 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07, 0x08,
  856. 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f, 0x10,
  857. 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17, 0x18,
  858. 0x19, 0x1a, 0x1b, 0x1c, 0x1d, 0x1e, 0x1f, 0x20,
  859. 0x21, 0x22, 0x23, 0x24, 0x25 },
  860. .ksize = 37,
  861. .plaintext = { [0 ... 49] = 0xcd },
  862. .psize = 50,
  863. .digest = { 0xd4, 0x63, 0x3c, 0x17, 0xf6, 0xfb, 0x8d, 0x74,
  864. 0x4c, 0x66, 0xde, 0xe0, 0xf8, 0xf0, 0x74, 0x55,
  865. 0x6e, 0xc4, 0xaf, 0x55, 0xef, 0x07, 0x99, 0x85,
  866. 0x41, 0x46, 0x8e, 0xb4, 0x9b, 0xd2, 0xe9, 0x17 },
  867. }, {
  868. .key = { [0 ... 31] = 0x0c },
  869. .ksize = 32,
  870. .plaintext = "Test With Truncation",
  871. .psize = 20,
  872. .digest = { 0x75, 0x46, 0xaf, 0x01, 0x84, 0x1f, 0xc0, 0x9b,
  873. 0x1a, 0xb9, 0xc3, 0x74, 0x9a, 0x5f, 0x1c, 0x17,
  874. 0xd4, 0xf5, 0x89, 0x66, 0x8a, 0x58, 0x7b, 0x27,
  875. 0x00, 0xa9, 0xc9, 0x7c, 0x11, 0x93, 0xcf, 0x42 },
  876. }, {
  877. .key = { [0 ... 79] = 0xaa },
  878. .ksize = 80,
  879. .plaintext = "Test Using Larger Than Block-Size Key - Hash Key First",
  880. .psize = 54,
  881. .digest = { 0x69, 0x53, 0x02, 0x5e, 0xd9, 0x6f, 0x0c, 0x09,
  882. 0xf8, 0x0a, 0x96, 0xf7, 0x8e, 0x65, 0x38, 0xdb,
  883. 0xe2, 0xe7, 0xb8, 0x20, 0xe3, 0xdd, 0x97, 0x0e,
  884. 0x7d, 0xdd, 0x39, 0x09, 0x1b, 0x32, 0x35, 0x2f },
  885. }, {
  886. .key = { [0 ... 79] = 0xaa },
  887. .ksize = 80,
  888. .plaintext = "Test Using Larger Than Block-Size Key and Larger Than "
  889. "One Block-Size Data",
  890. .psize = 73,
  891. .digest = { 0x63, 0x55, 0xac, 0x22, 0xe8, 0x90, 0xd0, 0xa3,
  892. 0xc8, 0x48, 0x1a, 0x5c, 0xa4, 0x82, 0x5b, 0xc8,
  893. 0x84, 0xd3, 0xe7, 0xa1, 0xff, 0x98, 0xa2, 0xfc,
  894. 0x2a, 0xc7, 0xd8, 0xe0, 0x64, 0xc3, 0xb2, 0xe6 },
  895. },
  896. };
  897. #endif /* CONFIG_CRYPTO_HMAC */
  898. /*
  899. * DES test vectors.
  900. */
  901. #define DES_ENC_TEST_VECTORS 10
  902. #define DES_DEC_TEST_VECTORS 4
  903. #define DES_CBC_ENC_TEST_VECTORS 5
  904. #define DES_CBC_DEC_TEST_VECTORS 4
  905. #define DES3_EDE_ENC_TEST_VECTORS 3
  906. #define DES3_EDE_DEC_TEST_VECTORS 3
  907. static struct cipher_testvec des_enc_tv_template[] = {
  908. { /* From Applied Cryptography */
  909. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  910. .klen = 8,
  911. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xe7 },
  912. .ilen = 8,
  913. .result = { 0xc9, 0x57, 0x44, 0x25, 0x6a, 0x5e, 0xd3, 0x1d },
  914. .rlen = 8,
  915. }, { /* Same key, different plaintext block */
  916. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  917. .klen = 8,
  918. .input = { 0x22, 0x33, 0x44, 0x55, 0x66, 0x77, 0x88, 0x99 },
  919. .ilen = 8,
  920. .result = { 0xf7, 0x9c, 0x89, 0x2a, 0x33, 0x8f, 0x4a, 0x8b },
  921. .rlen = 8,
  922. }, { /* Sbox test from NBS */
  923. .key = { 0x7c, 0xa1, 0x10, 0x45, 0x4a, 0x1a, 0x6e, 0x57 },
  924. .klen = 8,
  925. .input = { 0x01, 0xa1, 0xd6, 0xd0, 0x39, 0x77, 0x67, 0x42 },
  926. .ilen = 8,
  927. .result = { 0x69, 0x0f, 0x5b, 0x0d, 0x9a, 0x26, 0x93, 0x9b },
  928. .rlen = 8,
  929. }, { /* Three blocks */
  930. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  931. .klen = 8,
  932. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xe7,
  933. 0x22, 0x33, 0x44, 0x55, 0x66, 0x77, 0x88, 0x99,
  934. 0xca, 0xfe, 0xba, 0xbe, 0xfe, 0xed, 0xbe, 0xef },
  935. .ilen = 24,
  936. .result = { 0xc9, 0x57, 0x44, 0x25, 0x6a, 0x5e, 0xd3, 0x1d,
  937. 0xf7, 0x9c, 0x89, 0x2a, 0x33, 0x8f, 0x4a, 0x8b,
  938. 0xb4, 0x99, 0x26, 0xf7, 0x1f, 0xe1, 0xd4, 0x90 },
  939. .rlen = 24,
  940. }, { /* Weak key */
  941. .fail = 1,
  942. .wk = 1,
  943. .key = { 0x01, 0x01, 0x01, 0x01, 0x01, 0x01, 0x01, 0x01 },
  944. .klen = 8,
  945. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xe7 },
  946. .ilen = 8,
  947. .result = { 0xc9, 0x57, 0x44, 0x25, 0x6a, 0x5e, 0xd3, 0x1d },
  948. .rlen = 8,
  949. }, { /* Two blocks -- for testing encryption across pages */
  950. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  951. .klen = 8,
  952. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xe7,
  953. 0x22, 0x33, 0x44, 0x55, 0x66, 0x77, 0x88, 0x99 },
  954. .ilen = 16,
  955. .result = { 0xc9, 0x57, 0x44, 0x25, 0x6a, 0x5e, 0xd3, 0x1d,
  956. 0xf7, 0x9c, 0x89, 0x2a, 0x33, 0x8f, 0x4a, 0x8b },
  957. .rlen = 16,
  958. .np = 2,
  959. .tap = { 8, 8 }
  960. }, { /* Four blocks -- for testing encryption with chunking */
  961. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  962. .klen = 8,
  963. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xe7,
  964. 0x22, 0x33, 0x44, 0x55, 0x66, 0x77, 0x88, 0x99,
  965. 0xca, 0xfe, 0xba, 0xbe, 0xfe, 0xed, 0xbe, 0xef,
  966. 0x22, 0x33, 0x44, 0x55, 0x66, 0x77, 0x88, 0x99 },
  967. .ilen = 32,
  968. .result = { 0xc9, 0x57, 0x44, 0x25, 0x6a, 0x5e, 0xd3, 0x1d,
  969. 0xf7, 0x9c, 0x89, 0x2a, 0x33, 0x8f, 0x4a, 0x8b,
  970. 0xb4, 0x99, 0x26, 0xf7, 0x1f, 0xe1, 0xd4, 0x90,
  971. 0xf7, 0x9c, 0x89, 0x2a, 0x33, 0x8f, 0x4a, 0x8b },
  972. .rlen = 32,
  973. .np = 3,
  974. .tap = { 14, 10, 8 }
  975. }, {
  976. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  977. .klen = 8,
  978. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xe7,
  979. 0x22, 0x33, 0x44, 0x55, 0x66, 0x77, 0x88, 0x99,
  980. 0xca, 0xfe, 0xba, 0xbe, 0xfe, 0xed, 0xbe, 0xef },
  981. .ilen = 24,
  982. .result = { 0xc9, 0x57, 0x44, 0x25, 0x6a, 0x5e, 0xd3, 0x1d,
  983. 0xf7, 0x9c, 0x89, 0x2a, 0x33, 0x8f, 0x4a, 0x8b,
  984. 0xb4, 0x99, 0x26, 0xf7, 0x1f, 0xe1, 0xd4, 0x90 },
  985. .rlen = 24,
  986. .np = 4,
  987. .tap = { 2, 1, 3, 18 }
  988. }, {
  989. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  990. .klen = 8,
  991. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xe7,
  992. 0x22, 0x33, 0x44, 0x55, 0x66, 0x77, 0x88, 0x99 },
  993. .ilen = 16,
  994. .result = { 0xc9, 0x57, 0x44, 0x25, 0x6a, 0x5e, 0xd3, 0x1d,
  995. 0xf7, 0x9c, 0x89, 0x2a, 0x33, 0x8f, 0x4a, 0x8b },
  996. .rlen = 16,
  997. .np = 5,
  998. .tap = { 2, 2, 2, 2, 8 }
  999. }, {
  1000. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1001. .klen = 8,
  1002. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xe7 },
  1003. .ilen = 8,
  1004. .result = { 0xc9, 0x57, 0x44, 0x25, 0x6a, 0x5e, 0xd3, 0x1d },
  1005. .rlen = 8,
  1006. .np = 8,
  1007. .tap = { 1, 1, 1, 1, 1, 1, 1, 1 }
  1008. },
  1009. };
  1010. static struct cipher_testvec des_dec_tv_template[] = {
  1011. { /* From Applied Cryptography */
  1012. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1013. .klen = 8,
  1014. .input = { 0xc9, 0x57, 0x44, 0x25, 0x6a, 0x5e, 0xd3, 0x1d },
  1015. .ilen = 8,
  1016. .result = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xe7 },
  1017. .rlen = 8,
  1018. }, { /* Sbox test from NBS */
  1019. .key = { 0x7c, 0xa1, 0x10, 0x45, 0x4a, 0x1a, 0x6e, 0x57 },
  1020. .klen = 8,
  1021. .input = { 0x69, 0x0f, 0x5b, 0x0d, 0x9a, 0x26, 0x93, 0x9b },
  1022. .ilen = 8,
  1023. .result = { 0x01, 0xa1, 0xd6, 0xd0, 0x39, 0x77, 0x67, 0x42 },
  1024. .rlen = 8,
  1025. }, { /* Two blocks, for chunking test */
  1026. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1027. .klen = 8,
  1028. .input = { 0xc9, 0x57, 0x44, 0x25, 0x6a, 0x5e, 0xd3, 0x1d,
  1029. 0x69, 0x0f, 0x5b, 0x0d, 0x9a, 0x26, 0x93, 0x9b },
  1030. .ilen = 16,
  1031. .result = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xe7,
  1032. 0xa3, 0x99, 0x7b, 0xca, 0xaf, 0x69, 0xa0, 0xf5 },
  1033. .rlen = 16,
  1034. .np = 2,
  1035. .tap = { 8, 8 }
  1036. }, {
  1037. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1038. .klen = 8,
  1039. .input = { 0xc9, 0x57, 0x44, 0x25, 0x6a, 0x5e, 0xd3, 0x1d,
  1040. 0x69, 0x0f, 0x5b, 0x0d, 0x9a, 0x26, 0x93, 0x9b },
  1041. .ilen = 16,
  1042. .result = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xe7,
  1043. 0xa3, 0x99, 0x7b, 0xca, 0xaf, 0x69, 0xa0, 0xf5 },
  1044. .rlen = 16,
  1045. .np = 3,
  1046. .tap = { 3, 12, 1 }
  1047. },
  1048. };
  1049. static struct cipher_testvec des_cbc_enc_tv_template[] = {
  1050. { /* From OpenSSL */
  1051. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef},
  1052. .klen = 8,
  1053. .iv = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10},
  1054. .input = { 0x37, 0x36, 0x35, 0x34, 0x33, 0x32, 0x31, 0x20,
  1055. 0x4e, 0x6f, 0x77, 0x20, 0x69, 0x73, 0x20, 0x74,
  1056. 0x68, 0x65, 0x20, 0x74, 0x69, 0x6d, 0x65, 0x20 },
  1057. .ilen = 24,
  1058. .result = { 0xcc, 0xd1, 0x73, 0xff, 0xab, 0x20, 0x39, 0xf4,
  1059. 0xac, 0xd8, 0xae, 0xfd, 0xdf, 0xd8, 0xa1, 0xeb,
  1060. 0x46, 0x8e, 0x91, 0x15, 0x78, 0x88, 0xba, 0x68 },
  1061. .rlen = 24,
  1062. }, { /* FIPS Pub 81 */
  1063. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1064. .klen = 8,
  1065. .iv = { 0x12, 0x34, 0x56, 0x78, 0x90, 0xab, 0xcd, 0xef },
  1066. .input = { 0x4e, 0x6f, 0x77, 0x20, 0x69, 0x73, 0x20, 0x74 },
  1067. .ilen = 8,
  1068. .result = { 0xe5, 0xc7, 0xcd, 0xde, 0x87, 0x2b, 0xf2, 0x7c },
  1069. .rlen = 8,
  1070. }, {
  1071. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1072. .klen = 8,
  1073. .iv = { 0xe5, 0xc7, 0xcd, 0xde, 0x87, 0x2b, 0xf2, 0x7c },
  1074. .input = { 0x68, 0x65, 0x20, 0x74, 0x69, 0x6d, 0x65, 0x20 },
  1075. .ilen = 8,
  1076. .result = { 0x43, 0xe9, 0x34, 0x00, 0x8c, 0x38, 0x9c, 0x0f },
  1077. .rlen = 8,
  1078. }, {
  1079. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1080. .klen = 8,
  1081. .iv = { 0x43, 0xe9, 0x34, 0x00, 0x8c, 0x38, 0x9c, 0x0f },
  1082. .input = { 0x66, 0x6f, 0x72, 0x20, 0x61, 0x6c, 0x6c, 0x20 },
  1083. .ilen = 8,
  1084. .result = { 0x68, 0x37, 0x88, 0x49, 0x9a, 0x7c, 0x05, 0xf6 },
  1085. .rlen = 8,
  1086. }, { /* Copy of openssl vector for chunk testing */
  1087. /* From OpenSSL */
  1088. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef},
  1089. .klen = 8,
  1090. .iv = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10},
  1091. .input = { 0x37, 0x36, 0x35, 0x34, 0x33, 0x32, 0x31, 0x20,
  1092. 0x4e, 0x6f, 0x77, 0x20, 0x69, 0x73, 0x20, 0x74,
  1093. 0x68, 0x65, 0x20, 0x74, 0x69, 0x6d, 0x65, 0x20 },
  1094. .ilen = 24,
  1095. .result = { 0xcc, 0xd1, 0x73, 0xff, 0xab, 0x20, 0x39, 0xf4,
  1096. 0xac, 0xd8, 0xae, 0xfd, 0xdf, 0xd8, 0xa1, 0xeb,
  1097. 0x46, 0x8e, 0x91, 0x15, 0x78, 0x88, 0xba, 0x68 },
  1098. .rlen = 24,
  1099. .np = 2,
  1100. .tap = { 13, 11 }
  1101. },
  1102. };
  1103. static struct cipher_testvec des_cbc_dec_tv_template[] = {
  1104. { /* FIPS Pub 81 */
  1105. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1106. .klen = 8,
  1107. .iv = { 0x12, 0x34, 0x56, 0x78, 0x90, 0xab, 0xcd, 0xef },
  1108. .input = { 0xe5, 0xc7, 0xcd, 0xde, 0x87, 0x2b, 0xf2, 0x7c },
  1109. .ilen = 8,
  1110. .result = { 0x4e, 0x6f, 0x77, 0x20, 0x69, 0x73, 0x20, 0x74 },
  1111. .rlen = 8,
  1112. }, {
  1113. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1114. .klen = 8,
  1115. .iv = { 0xe5, 0xc7, 0xcd, 0xde, 0x87, 0x2b, 0xf2, 0x7c },
  1116. .input = { 0x43, 0xe9, 0x34, 0x00, 0x8c, 0x38, 0x9c, 0x0f },
  1117. .ilen = 8,
  1118. .result = { 0x68, 0x65, 0x20, 0x74, 0x69, 0x6d, 0x65, 0x20 },
  1119. .rlen = 8,
  1120. }, {
  1121. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1122. .klen = 8,
  1123. .iv = { 0x43, 0xe9, 0x34, 0x00, 0x8c, 0x38, 0x9c, 0x0f },
  1124. .input = { 0x68, 0x37, 0x88, 0x49, 0x9a, 0x7c, 0x05, 0xf6 },
  1125. .ilen = 8,
  1126. .result = { 0x66, 0x6f, 0x72, 0x20, 0x61, 0x6c, 0x6c, 0x20 },
  1127. .rlen = 8,
  1128. }, { /* Copy of above, for chunk testing */
  1129. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1130. .klen = 8,
  1131. .iv = { 0x43, 0xe9, 0x34, 0x00, 0x8c, 0x38, 0x9c, 0x0f },
  1132. .input = { 0x68, 0x37, 0x88, 0x49, 0x9a, 0x7c, 0x05, 0xf6 },
  1133. .ilen = 8,
  1134. .result = { 0x66, 0x6f, 0x72, 0x20, 0x61, 0x6c, 0x6c, 0x20 },
  1135. .rlen = 8,
  1136. .np = 2,
  1137. .tap = { 4, 4 }
  1138. },
  1139. };
  1140. /*
  1141. * We really need some more test vectors, especially for DES3 CBC.
  1142. */
  1143. static struct cipher_testvec des3_ede_enc_tv_template[] = {
  1144. { /* These are from openssl */
  1145. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef,
  1146. 0x55, 0x55, 0x55, 0x55, 0x55, 0x55, 0x55, 0x55,
  1147. 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10},
  1148. .klen = 24,
  1149. .input = { 0x73, 0x6f, 0x6d, 0x65, 0x64, 0x61, 0x74, 0x61 },
  1150. .ilen = 8,
  1151. .result = { 0x18, 0xd7, 0x48, 0xe5, 0x63, 0x62, 0x05, 0x72 },
  1152. .rlen = 8,
  1153. }, {
  1154. .key = { 0x03, 0x52, 0x02, 0x07, 0x67, 0x20, 0x82, 0x17,
  1155. 0x86, 0x02, 0x87, 0x66, 0x59, 0x08, 0x21, 0x98,
  1156. 0x64, 0x05, 0x6a, 0xbd, 0xfe, 0xa9, 0x34, 0x57 },
  1157. .klen = 24,
  1158. .input = { 0x73, 0x71, 0x75, 0x69, 0x67, 0x67, 0x6c, 0x65 },
  1159. .ilen = 8,
  1160. .result = { 0xc0, 0x7d, 0x2a, 0x0f, 0xa5, 0x66, 0xfa, 0x30 },
  1161. .rlen = 8,
  1162. }, {
  1163. .key = { 0x10, 0x46, 0x10, 0x34, 0x89, 0x98, 0x80, 0x20,
  1164. 0x91, 0x07, 0xd0, 0x15, 0x89, 0x19, 0x01, 0x01,
  1165. 0x19, 0x07, 0x92, 0x10, 0x98, 0x1a, 0x01, 0x01 },
  1166. .klen = 24,
  1167. .input = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1168. .ilen = 8,
  1169. .result = { 0xe1, 0xef, 0x62, 0xc3, 0x32, 0xfe, 0x82, 0x5b },
  1170. .rlen = 8,
  1171. },
  1172. };
  1173. static struct cipher_testvec des3_ede_dec_tv_template[] = {
  1174. { /* These are from openssl */
  1175. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef,
  1176. 0x55, 0x55, 0x55, 0x55, 0x55, 0x55, 0x55, 0x55,
  1177. 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10},
  1178. .klen = 24,
  1179. .input = { 0x18, 0xd7, 0x48, 0xe5, 0x63, 0x62, 0x05, 0x72 },
  1180. .ilen = 8,
  1181. .result = { 0x73, 0x6f, 0x6d, 0x65, 0x64, 0x61, 0x74, 0x61 },
  1182. .rlen = 8,
  1183. }, {
  1184. .key = { 0x03, 0x52, 0x02, 0x07, 0x67, 0x20, 0x82, 0x17,
  1185. 0x86, 0x02, 0x87, 0x66, 0x59, 0x08, 0x21, 0x98,
  1186. 0x64, 0x05, 0x6a, 0xbd, 0xfe, 0xa9, 0x34, 0x57 },
  1187. .klen = 24,
  1188. .input = { 0xc0, 0x7d, 0x2a, 0x0f, 0xa5, 0x66, 0xfa, 0x30 },
  1189. .ilen = 8,
  1190. .result = { 0x73, 0x71, 0x75, 0x69, 0x67, 0x67, 0x6c, 0x65 },
  1191. .rlen = 8,
  1192. }, {
  1193. .key = { 0x10, 0x46, 0x10, 0x34, 0x89, 0x98, 0x80, 0x20,
  1194. 0x91, 0x07, 0xd0, 0x15, 0x89, 0x19, 0x01, 0x01,
  1195. 0x19, 0x07, 0x92, 0x10, 0x98, 0x1a, 0x01, 0x01 },
  1196. .klen = 24,
  1197. .input = { 0xe1, 0xef, 0x62, 0xc3, 0x32, 0xfe, 0x82, 0x5b },
  1198. .ilen = 8,
  1199. .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1200. .rlen = 8,
  1201. },
  1202. };
  1203. /*
  1204. * Blowfish test vectors.
  1205. */
  1206. #define BF_ENC_TEST_VECTORS 6
  1207. #define BF_DEC_TEST_VECTORS 6
  1208. #define BF_CBC_ENC_TEST_VECTORS 1
  1209. #define BF_CBC_DEC_TEST_VECTORS 1
  1210. static struct cipher_testvec bf_enc_tv_template[] = {
  1211. { /* DES test vectors from OpenSSL */
  1212. .key = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, },
  1213. .klen = 8,
  1214. .input = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1215. .ilen = 8,
  1216. .result = { 0x4e, 0xf9, 0x97, 0x45, 0x61, 0x98, 0xdd, 0x78 },
  1217. .rlen = 8,
  1218. }, {
  1219. .key = { 0x1f, 0x1f, 0x1f, 0x1f, 0x0e, 0x0e, 0x0e, 0x0e },
  1220. .klen = 8,
  1221. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1222. .ilen = 8,
  1223. .result = { 0xa7, 0x90, 0x79, 0x51, 0x08, 0xea, 0x3c, 0xae },
  1224. .rlen = 8,
  1225. }, {
  1226. .key = { 0xf0, 0xe1, 0xd2, 0xc3, 0xb4, 0xa5, 0x96, 0x87 },
  1227. .klen = 8,
  1228. .input = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10 },
  1229. .ilen = 8,
  1230. .result = { 0xe8, 0x7a, 0x24, 0x4e, 0x2c, 0xc8, 0x5e, 0x82 },
  1231. .rlen = 8,
  1232. }, { /* Vary the keylength... */
  1233. .key = { 0xf0, 0xe1, 0xd2, 0xc3, 0xb4, 0xa5, 0x96, 0x87,
  1234. 0x78, 0x69, 0x5a, 0x4b, 0x3c, 0x2d, 0x1e, 0x0f },
  1235. .klen = 16,
  1236. .input = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10 },
  1237. .ilen = 8,
  1238. .result = { 0x93, 0x14, 0x28, 0x87, 0xee, 0x3b, 0xe1, 0x5c },
  1239. .rlen = 8,
  1240. }, {
  1241. .key = { 0xf0, 0xe1, 0xd2, 0xc3, 0xb4, 0xa5, 0x96, 0x87,
  1242. 0x78, 0x69, 0x5a, 0x4b, 0x3c, 0x2d, 0x1e, 0x0f,
  1243. 0x00, 0x11, 0x22, 0x33, 0x44 },
  1244. .klen = 21,
  1245. .input = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10 },
  1246. .ilen = 8,
  1247. .result = { 0xe6, 0xf5, 0x1e, 0xd7, 0x9b, 0x9d, 0xb2, 0x1f },
  1248. .rlen = 8,
  1249. }, { /* Generated with bf488 */
  1250. .key = { 0xf0, 0xe1, 0xd2, 0xc3, 0xb4, 0xa5, 0x96, 0x87,
  1251. 0x78, 0x69, 0x5a, 0x4b, 0x3c, 0x2d, 0x1e, 0x0f,
  1252. 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77,
  1253. 0x04, 0x68, 0x91, 0x04, 0xc2, 0xfd, 0x3b, 0x2f,
  1254. 0x58, 0x40, 0x23, 0x64, 0x1a, 0xba, 0x61, 0x76,
  1255. 0x1f, 0x1f, 0x1f, 0x1f, 0x0e, 0x0e, 0x0e, 0x0e,
  1256. 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
  1257. .klen = 56,
  1258. .input = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10 },
  1259. .ilen = 8,
  1260. .result = { 0xc0, 0x45, 0x04, 0x01, 0x2e, 0x4e, 0x1f, 0x53 },
  1261. .rlen = 8,
  1262. },
  1263. };
  1264. static struct cipher_testvec bf_dec_tv_template[] = {
  1265. { /* DES test vectors from OpenSSL */
  1266. .key = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1267. .klen = 8,
  1268. .input = { 0x4e, 0xf9, 0x97, 0x45, 0x61, 0x98, 0xdd, 0x78 },
  1269. .ilen = 8,
  1270. .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1271. .rlen = 8,
  1272. }, {
  1273. .key = { 0x1f, 0x1f, 0x1f, 0x1f, 0x0e, 0x0e, 0x0e, 0x0e },
  1274. .klen = 8,
  1275. .input = { 0xa7, 0x90, 0x79, 0x51, 0x08, 0xea, 0x3c, 0xae },
  1276. .ilen = 8,
  1277. .result = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1278. .rlen = 8,
  1279. }, {
  1280. .key = { 0xf0, 0xe1, 0xd2, 0xc3, 0xb4, 0xa5, 0x96, 0x87 },
  1281. .klen = 8,
  1282. .input = { 0xe8, 0x7a, 0x24, 0x4e, 0x2c, 0xc8, 0x5e, 0x82 },
  1283. .ilen = 8,
  1284. .result = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10 },
  1285. .rlen = 8,
  1286. }, { /* Vary the keylength... */
  1287. .key = { 0xf0, 0xe1, 0xd2, 0xc3, 0xb4, 0xa5, 0x96, 0x87,
  1288. 0x78, 0x69, 0x5a, 0x4b, 0x3c, 0x2d, 0x1e, 0x0f },
  1289. .klen = 16,
  1290. .input = { 0x93, 0x14, 0x28, 0x87, 0xee, 0x3b, 0xe1, 0x5c },
  1291. .ilen = 8,
  1292. .result = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10 },
  1293. .rlen = 8,
  1294. }, {
  1295. .key = { 0xf0, 0xe1, 0xd2, 0xc3, 0xb4, 0xa5, 0x96, 0x87,
  1296. 0x78, 0x69, 0x5a, 0x4b, 0x3c, 0x2d, 0x1e, 0x0f,
  1297. 0x00, 0x11, 0x22, 0x33, 0x44 },
  1298. .klen = 21,
  1299. .input = { 0xe6, 0xf5, 0x1e, 0xd7, 0x9b, 0x9d, 0xb2, 0x1f },
  1300. .ilen = 8,
  1301. .result = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10 },
  1302. .rlen = 8,
  1303. }, { /* Generated with bf488, using OpenSSL, Libgcrypt and Nettle */
  1304. .key = { 0xf0, 0xe1, 0xd2, 0xc3, 0xb4, 0xa5, 0x96, 0x87,
  1305. 0x78, 0x69, 0x5a, 0x4b, 0x3c, 0x2d, 0x1e, 0x0f,
  1306. 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77,
  1307. 0x04, 0x68, 0x91, 0x04, 0xc2, 0xfd, 0x3b, 0x2f,
  1308. 0x58, 0x40, 0x23, 0x64, 0x1a, 0xba, 0x61, 0x76,
  1309. 0x1f, 0x1f, 0x1f, 0x1f, 0x0e, 0x0e, 0x0e, 0x0e,
  1310. 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
  1311. .klen = 56,
  1312. .input = { 0xc0, 0x45, 0x04, 0x01, 0x2e, 0x4e, 0x1f, 0x53 },
  1313. .ilen = 8,
  1314. .result = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10 },
  1315. .rlen = 8,
  1316. },
  1317. };
  1318. static struct cipher_testvec bf_cbc_enc_tv_template[] = {
  1319. { /* From OpenSSL */
  1320. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef,
  1321. 0xf0, 0xe1, 0xd2, 0xc3, 0xb4, 0xa5, 0x96, 0x87 },
  1322. .klen = 16,
  1323. .iv = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10 },
  1324. .input = { 0x37, 0x36, 0x35, 0x34, 0x33, 0x32, 0x31, 0x20,
  1325. 0x4e, 0x6f, 0x77, 0x20, 0x69, 0x73, 0x20, 0x74,
  1326. 0x68, 0x65, 0x20, 0x74, 0x69, 0x6d, 0x65, 0x20,
  1327. 0x66, 0x6f, 0x72, 0x20, 0x00, 0x00, 0x00, 0x00 },
  1328. .ilen = 32,
  1329. .result = { 0x6b, 0x77, 0xb4, 0xd6, 0x30, 0x06, 0xde, 0xe6,
  1330. 0x05, 0xb1, 0x56, 0xe2, 0x74, 0x03, 0x97, 0x93,
  1331. 0x58, 0xde, 0xb9, 0xe7, 0x15, 0x46, 0x16, 0xd9,
  1332. 0x59, 0xf1, 0x65, 0x2b, 0xd5, 0xff, 0x92, 0xcc },
  1333. .rlen = 32,
  1334. },
  1335. };
  1336. static struct cipher_testvec bf_cbc_dec_tv_template[] = {
  1337. { /* From OpenSSL */
  1338. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef,
  1339. 0xf0, 0xe1, 0xd2, 0xc3, 0xb4, 0xa5, 0x96, 0x87 },
  1340. .klen = 16,
  1341. .iv = { 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10 },
  1342. .input = { 0x6b, 0x77, 0xb4, 0xd6, 0x30, 0x06, 0xde, 0xe6,
  1343. 0x05, 0xb1, 0x56, 0xe2, 0x74, 0x03, 0x97, 0x93,
  1344. 0x58, 0xde, 0xb9, 0xe7, 0x15, 0x46, 0x16, 0xd9,
  1345. 0x59, 0xf1, 0x65, 0x2b, 0xd5, 0xff, 0x92, 0xcc },
  1346. .ilen = 32,
  1347. .result = { 0x37, 0x36, 0x35, 0x34, 0x33, 0x32, 0x31, 0x20,
  1348. 0x4e, 0x6f, 0x77, 0x20, 0x69, 0x73, 0x20, 0x74,
  1349. 0x68, 0x65, 0x20, 0x74, 0x69, 0x6d, 0x65, 0x20,
  1350. 0x66, 0x6f, 0x72, 0x20, 0x00, 0x00, 0x00, 0x00 },
  1351. .rlen = 32,
  1352. },
  1353. };
  1354. /*
  1355. * Twofish test vectors.
  1356. */
  1357. #define TF_ENC_TEST_VECTORS 3
  1358. #define TF_DEC_TEST_VECTORS 3
  1359. #define TF_CBC_ENC_TEST_VECTORS 4
  1360. #define TF_CBC_DEC_TEST_VECTORS 4
  1361. static struct cipher_testvec tf_enc_tv_template[] = {
  1362. {
  1363. .key = { [0 ... 15] = 0x00 },
  1364. .klen = 16,
  1365. .input = { [0 ... 15] = 0x00 },
  1366. .ilen = 16,
  1367. .result = { 0x9f, 0x58, 0x9f, 0x5c, 0xf6, 0x12, 0x2c, 0x32,
  1368. 0xb6, 0xbf, 0xec, 0x2f, 0x2a, 0xe8, 0xc3, 0x5a },
  1369. .rlen = 16,
  1370. }, {
  1371. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef,
  1372. 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10,
  1373. 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77 },
  1374. .klen = 24,
  1375. .input = { [0 ... 15] = 0x00 },
  1376. .ilen = 16,
  1377. .result = { 0xcf, 0xd1, 0xd2, 0xe5, 0xa9, 0xbe, 0x9c, 0xdf,
  1378. 0x50, 0x1f, 0x13, 0xb8, 0x92, 0xbd, 0x22, 0x48 },
  1379. .rlen = 16,
  1380. }, {
  1381. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef,
  1382. 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10,
  1383. 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77,
  1384. 0x88, 0x99, 0xaa, 0xbb, 0xcc, 0xdd, 0xee, 0xff },
  1385. .klen = 32,
  1386. .input = { [0 ... 15] = 0x00 },
  1387. .ilen = 16,
  1388. .result = { 0x37, 0x52, 0x7b, 0xe0, 0x05, 0x23, 0x34, 0xb8,
  1389. 0x9f, 0x0c, 0xfc, 0xca, 0xe8, 0x7c, 0xfa, 0x20 },
  1390. .rlen = 16,
  1391. },
  1392. };
  1393. static struct cipher_testvec tf_dec_tv_template[] = {
  1394. {
  1395. .key = { [0 ... 15] = 0x00 },
  1396. .klen = 16,
  1397. .input = { 0x9f, 0x58, 0x9f, 0x5c, 0xf6, 0x12, 0x2c, 0x32,
  1398. 0xb6, 0xbf, 0xec, 0x2f, 0x2a, 0xe8, 0xc3, 0x5a },
  1399. .ilen = 16,
  1400. .result = { [0 ... 15] = 0x00 },
  1401. .rlen = 16,
  1402. }, {
  1403. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef,
  1404. 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10,
  1405. 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77 },
  1406. .klen = 24,
  1407. .input = { 0xcf, 0xd1, 0xd2, 0xe5, 0xa9, 0xbe, 0x9c, 0xdf,
  1408. 0x50, 0x1f, 0x13, 0xb8, 0x92, 0xbd, 0x22, 0x48 },
  1409. .ilen = 16,
  1410. .result = { [0 ... 15] = 0x00 },
  1411. .rlen = 16,
  1412. }, {
  1413. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef,
  1414. 0xfe, 0xdc, 0xba, 0x98, 0x76, 0x54, 0x32, 0x10,
  1415. 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77,
  1416. 0x88, 0x99, 0xaa, 0xbb, 0xcc, 0xdd, 0xee, 0xff },
  1417. .klen = 32,
  1418. .input = { 0x37, 0x52, 0x7b, 0xe0, 0x05, 0x23, 0x34, 0xb8,
  1419. 0x9f, 0x0c, 0xfc, 0xca, 0xe8, 0x7c, 0xfa, 0x20 },
  1420. .ilen = 16,
  1421. .result = { [0 ... 15] = 0x00 },
  1422. .rlen = 16,
  1423. },
  1424. };
  1425. static struct cipher_testvec tf_cbc_enc_tv_template[] = {
  1426. { /* Generated with Nettle */
  1427. .key = { [0 ... 15] = 0x00 },
  1428. .klen = 16,
  1429. .iv = { [0 ... 15] = 0x00 },
  1430. .input = { [0 ... 15] = 0x00 },
  1431. .ilen = 16,
  1432. .result = { 0x9f, 0x58, 0x9f, 0x5c, 0xf6, 0x12, 0x2c, 0x32,
  1433. 0xb6, 0xbf, 0xec, 0x2f, 0x2a, 0xe8, 0xc3, 0x5a },
  1434. .rlen = 16,
  1435. }, {
  1436. .key = { [0 ... 15] = 0x00 },
  1437. .klen = 16,
  1438. .iv = { 0x9f, 0x58, 0x9f, 0x5c, 0xf6, 0x12, 0x2c, 0x32,
  1439. 0xb6, 0xbf, 0xec, 0x2f, 0x2a, 0xe8, 0xc3, 0x5a },
  1440. .input = { [0 ... 15] = 0x00 },
  1441. .ilen = 16,
  1442. .result = { 0xd4, 0x91, 0xdb, 0x16, 0xe7, 0xb1, 0xc3, 0x9e,
  1443. 0x86, 0xcb, 0x08, 0x6b, 0x78, 0x9f, 0x54, 0x19 },
  1444. .rlen = 16,
  1445. }, {
  1446. .key = { [0 ... 15] = 0x00 },
  1447. .klen = 16,
  1448. .iv = { 0xd4, 0x91, 0xdb, 0x16, 0xe7, 0xb1, 0xc3, 0x9e,
  1449. 0x86, 0xcb, 0x08, 0x6b, 0x78, 0x9f, 0x54, 0x19 },
  1450. .input = { [0 ... 15] = 0x00 },
  1451. .ilen = 16,
  1452. .result = { 0x05, 0xef, 0x8c, 0x61, 0xa8, 0x11, 0x58, 0x26,
  1453. 0x34, 0xba, 0x5c, 0xb7, 0x10, 0x6a, 0xa6, 0x41 },
  1454. .rlen = 16,
  1455. }, {
  1456. .key = { [0 ... 15] = 0x00 },
  1457. .klen = 16,
  1458. .iv = { [0 ... 15] = 0x00 },
  1459. .input = { [0 ... 47] = 0x00 },
  1460. .ilen = 48,
  1461. .result = { 0x9f, 0x58, 0x9f, 0x5c, 0xf6, 0x12, 0x2c, 0x32,
  1462. 0xb6, 0xbf, 0xec, 0x2f, 0x2a, 0xe8, 0xc3, 0x5a,
  1463. 0xd4, 0x91, 0xdb, 0x16, 0xe7, 0xb1, 0xc3, 0x9e,
  1464. 0x86, 0xcb, 0x08, 0x6b, 0x78, 0x9f, 0x54, 0x19,
  1465. 0x05, 0xef, 0x8c, 0x61, 0xa8, 0x11, 0x58, 0x26,
  1466. 0x34, 0xba, 0x5c, 0xb7, 0x10, 0x6a, 0xa6, 0x41 },
  1467. .rlen = 48,
  1468. },
  1469. };
  1470. static struct cipher_testvec tf_cbc_dec_tv_template[] = {
  1471. { /* Reverse of the first four above */
  1472. .key = { [0 ... 15] = 0x00 },
  1473. .klen = 16,
  1474. .iv = { [0 ... 15] = 0x00 },
  1475. .input = { 0x9f, 0x58, 0x9f, 0x5c, 0xf6, 0x12, 0x2c, 0x32,
  1476. 0xb6, 0xbf, 0xec, 0x2f, 0x2a, 0xe8, 0xc3, 0x5a },
  1477. .ilen = 16,
  1478. .result = { [0 ... 15] = 0x00 },
  1479. .rlen = 16,
  1480. }, {
  1481. .key = { [0 ... 15] = 0x00 },
  1482. .klen = 16,
  1483. .iv = { 0x9f, 0x58, 0x9f, 0x5c, 0xf6, 0x12, 0x2c, 0x32,
  1484. 0xb6, 0xbf, 0xec, 0x2f, 0x2a, 0xe8, 0xc3, 0x5a },
  1485. .input = { 0xd4, 0x91, 0xdb, 0x16, 0xe7, 0xb1, 0xc3, 0x9e,
  1486. 0x86, 0xcb, 0x08, 0x6b, 0x78, 0x9f, 0x54, 0x19 },
  1487. .ilen = 16,
  1488. .result = { [0 ... 15] = 0x00 },
  1489. .rlen = 16,
  1490. }, {
  1491. .key = { [0 ... 15] = 0x00 },
  1492. .klen = 16,
  1493. .iv = { 0xd4, 0x91, 0xdb, 0x16, 0xe7, 0xb1, 0xc3, 0x9e,
  1494. 0x86, 0xcb, 0x08, 0x6b, 0x78, 0x9f, 0x54, 0x19 },
  1495. .input = { 0x05, 0xef, 0x8c, 0x61, 0xa8, 0x11, 0x58, 0x26,
  1496. 0x34, 0xba, 0x5c, 0xb7, 0x10, 0x6a, 0xa6, 0x41 },
  1497. .ilen = 16,
  1498. .result = { [0 ... 15] = 0x00 },
  1499. .rlen = 16,
  1500. }, {
  1501. .key = { [0 ... 15] = 0x00 },
  1502. .klen = 16,
  1503. .iv = { [0 ... 15] = 0x00 },
  1504. .input = { 0x9f, 0x58, 0x9f, 0x5c, 0xf6, 0x12, 0x2c, 0x32,
  1505. 0xb6, 0xbf, 0xec, 0x2f, 0x2a, 0xe8, 0xc3, 0x5a,
  1506. 0xd4, 0x91, 0xdb, 0x16, 0xe7, 0xb1, 0xc3, 0x9e,
  1507. 0x86, 0xcb, 0x08, 0x6b, 0x78, 0x9f, 0x54, 0x19,
  1508. 0x05, 0xef, 0x8c, 0x61, 0xa8, 0x11, 0x58, 0x26,
  1509. 0x34, 0xba, 0x5c, 0xb7, 0x10, 0x6a, 0xa6, 0x41 },
  1510. .ilen = 48,
  1511. .result = { [0 ... 47] = 0x00 },
  1512. .rlen = 48,
  1513. },
  1514. };
  1515. /*
  1516. * Serpent test vectors. These are backwards because Serpent writes
  1517. * octet sequences in right-to-left mode.
  1518. */
  1519. #define SERPENT_ENC_TEST_VECTORS 4
  1520. #define SERPENT_DEC_TEST_VECTORS 4
  1521. #define TNEPRES_ENC_TEST_VECTORS 4
  1522. #define TNEPRES_DEC_TEST_VECTORS 4
  1523. static struct cipher_testvec serpent_enc_tv_template[] = {
  1524. {
  1525. .input = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1526. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1527. .ilen = 16,
  1528. .result = { 0x12, 0x07, 0xfc, 0xce, 0x9b, 0xd0, 0xd6, 0x47,
  1529. 0x6a, 0xe9, 0x8f, 0xbe, 0xd1, 0x43, 0xa0, 0xe2 },
  1530. .rlen = 16,
  1531. }, {
  1532. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1533. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1534. .klen = 16,
  1535. .input = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1536. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1537. .ilen = 16,
  1538. .result = { 0x4c, 0x7d, 0x8a, 0x32, 0x80, 0x72, 0xa2, 0x2c,
  1539. 0x82, 0x3e, 0x4a, 0x1f, 0x3a, 0xcd, 0xa1, 0x6d },
  1540. .rlen = 16,
  1541. }, {
  1542. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1543. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f,
  1544. 0x10, 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17,
  1545. 0x18, 0x19, 0x1a, 0x1b, 0x1c, 0x1d, 0x1e, 0x1f },
  1546. .klen = 32,
  1547. .input = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1548. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1549. .ilen = 16,
  1550. .result = { 0xde, 0x26, 0x9f, 0xf8, 0x33, 0xe4, 0x32, 0xb8,
  1551. 0x5b, 0x2e, 0x88, 0xd2, 0x70, 0x1c, 0xe7, 0x5c },
  1552. .rlen = 16,
  1553. }, {
  1554. .key = { [15] = 0x80 },
  1555. .klen = 16,
  1556. .input = { [0 ... 15] = 0x00 },
  1557. .ilen = 16,
  1558. .result = { 0xdd, 0xd2, 0x6b, 0x98, 0xa5, 0xff, 0xd8, 0x2c,
  1559. 0x05, 0x34, 0x5a, 0x9d, 0xad, 0xbf, 0xaf, 0x49},
  1560. .rlen = 16,
  1561. },
  1562. };
  1563. static struct cipher_testvec tnepres_enc_tv_template[] = {
  1564. { /* KeySize=128, PT=0, I=1 */
  1565. .input = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  1566. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1567. .key = { 0x80, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  1568. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1569. .klen = 16,
  1570. .ilen = 16,
  1571. .result = { 0x49, 0xaf, 0xbf, 0xad, 0x9d, 0x5a, 0x34, 0x05,
  1572. 0x2c, 0xd8, 0xff, 0xa5, 0x98, 0x6b, 0xd2, 0xdd },
  1573. .rlen = 16,
  1574. }, { /* KeySize=192, PT=0, I=1 */
  1575. .key = { 0x80, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  1576. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  1577. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1578. .klen = 24,
  1579. .input = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  1580. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1581. .ilen = 16,
  1582. .result = { 0xe7, 0x8e, 0x54, 0x02, 0xc7, 0x19, 0x55, 0x68,
  1583. 0xac, 0x36, 0x78, 0xf7, 0xa3, 0xf6, 0x0c, 0x66 },
  1584. .rlen = 16,
  1585. }, { /* KeySize=256, PT=0, I=1 */
  1586. .key = { 0x80, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  1587. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  1588. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  1589. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1590. .klen = 32,
  1591. .input = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  1592. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1593. .ilen = 16,
  1594. .result = { 0xab, 0xed, 0x96, 0xe7, 0x66, 0xbf, 0x28, 0xcb,
  1595. 0xc0, 0xeb, 0xd2, 0x1a, 0x82, 0xef, 0x08, 0x19 },
  1596. .rlen = 16,
  1597. }, { /* KeySize=256, I=257 */
  1598. .key = { 0x1f, 0x1e, 0x1d, 0x1c, 0x1b, 0x1a, 0x19, 0x18,
  1599. 0x17, 0x16, 0x15, 0x14, 0x13, 0x12, 0x11, 0x10,
  1600. 0x0f, 0x0e, 0x0d, 0x0c, 0x0b, 0x0a, 0x09, 0x08,
  1601. 0x07, 0x06, 0x05, 0x04, 0x03, 0x02, 0x01, 0x00 },
  1602. .klen = 32,
  1603. .input = { 0x0f, 0x0e, 0x0d, 0x0c, 0x0b, 0x0a, 0x09, 0x08,
  1604. 0x07, 0x06, 0x05, 0x04, 0x03, 0x02, 0x01, 0x00 },
  1605. .ilen = 16,
  1606. .result = { 0x5c, 0xe7, 0x1c, 0x70, 0xd2, 0x88, 0x2e, 0x5b,
  1607. 0xb8, 0x32, 0xe4, 0x33, 0xf8, 0x9f, 0x26, 0xde },
  1608. .rlen = 16,
  1609. },
  1610. };
  1611. static struct cipher_testvec serpent_dec_tv_template[] = {
  1612. {
  1613. .input = { 0x12, 0x07, 0xfc, 0xce, 0x9b, 0xd0, 0xd6, 0x47,
  1614. 0x6a, 0xe9, 0x8f, 0xbe, 0xd1, 0x43, 0xa0, 0xe2 },
  1615. .ilen = 16,
  1616. .result = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1617. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1618. .rlen = 16,
  1619. }, {
  1620. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1621. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1622. .klen = 16,
  1623. .input = { 0x4c, 0x7d, 0x8a, 0x32, 0x80, 0x72, 0xa2, 0x2c,
  1624. 0x82, 0x3e, 0x4a, 0x1f, 0x3a, 0xcd, 0xa1, 0x6d },
  1625. .ilen = 16,
  1626. .result = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1627. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1628. .rlen = 16,
  1629. }, {
  1630. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1631. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f,
  1632. 0x10, 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17,
  1633. 0x18, 0x19, 0x1a, 0x1b, 0x1c, 0x1d, 0x1e, 0x1f },
  1634. .klen = 32,
  1635. .input = { 0xde, 0x26, 0x9f, 0xf8, 0x33, 0xe4, 0x32, 0xb8,
  1636. 0x5b, 0x2e, 0x88, 0xd2, 0x70, 0x1c, 0xe7, 0x5c },
  1637. .ilen = 16,
  1638. .result = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1639. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1640. .rlen = 16,
  1641. }, {
  1642. .key = { [15] = 0x80 },
  1643. .klen = 16,
  1644. .input = { 0xdd, 0xd2, 0x6b, 0x98, 0xa5, 0xff, 0xd8, 0x2c,
  1645. 0x05, 0x34, 0x5a, 0x9d, 0xad, 0xbf, 0xaf, 0x49},
  1646. .ilen = 16,
  1647. .result = { [0 ... 15] = 0x00 },
  1648. .rlen = 16,
  1649. },
  1650. };
  1651. static struct cipher_testvec tnepres_dec_tv_template[] = {
  1652. {
  1653. .input = { 0x41, 0xcc, 0x6b, 0x31, 0x59, 0x31, 0x45, 0x97,
  1654. 0x6d, 0x6f, 0xbb, 0x38, 0x4b, 0x37, 0x21, 0x28 },
  1655. .ilen = 16,
  1656. .result = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1657. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1658. .rlen = 16,
  1659. }, {
  1660. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1661. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1662. .klen = 16,
  1663. .input = { 0xea, 0xf4, 0xd7, 0xfc, 0xd8, 0x01, 0x34, 0x47,
  1664. 0x81, 0x45, 0x0b, 0xfa, 0x0c, 0xd6, 0xad, 0x6e },
  1665. .ilen = 16,
  1666. .result = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1667. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1668. .rlen = 16,
  1669. }, {
  1670. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1671. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f,
  1672. 0x10, 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17,
  1673. 0x18, 0x19, 0x1a, 0x1b, 0x1c, 0x1d, 0x1e, 0x1f },
  1674. .klen = 32,
  1675. .input = { 0x64, 0xa9, 0x1a, 0x37, 0xed, 0x9f, 0xe7, 0x49,
  1676. 0xa8, 0x4e, 0x76, 0xd6, 0xf5, 0x0d, 0x78, 0xee },
  1677. .ilen = 16,
  1678. .result = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1679. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1680. .rlen = 16,
  1681. }, { /* KeySize=128, I=121 */
  1682. .key = { [15] = 0x80 },
  1683. .klen = 16,
  1684. .input = { 0x3d, 0xda, 0xbf, 0xc0, 0x06, 0xda, 0xab, 0x06,
  1685. 0x46, 0x2a, 0xf4, 0xef, 0x81, 0x54, 0x4e, 0x26 },
  1686. .ilen = 16,
  1687. .result = { [0 ... 15] = 0x00 },
  1688. .rlen = 16,
  1689. },
  1690. };
  1691. /* Cast6 test vectors from RFC 2612 */
  1692. #define CAST6_ENC_TEST_VECTORS 3
  1693. #define CAST6_DEC_TEST_VECTORS 3
  1694. static struct cipher_testvec cast6_enc_tv_template[] = {
  1695. {
  1696. .key = { 0x23, 0x42, 0xbb, 0x9e, 0xfa, 0x38, 0x54, 0x2c,
  1697. 0x0a, 0xf7, 0x56, 0x47, 0xf2, 0x9f, 0x61, 0x5d },
  1698. .klen = 16,
  1699. .input = { [0 ... 15] = 0x00 },
  1700. .ilen = 16,
  1701. .result = { 0xc8, 0x42, 0xa0, 0x89, 0x72, 0xb4, 0x3d, 0x20,
  1702. 0x83, 0x6c, 0x91, 0xd1, 0xb7, 0x53, 0x0f, 0x6b },
  1703. .rlen = 16,
  1704. }, {
  1705. .key = { 0x23, 0x42, 0xbb, 0x9e, 0xfa, 0x38, 0x54, 0x2c,
  1706. 0xbe, 0xd0, 0xac, 0x83, 0x94, 0x0a, 0xc2, 0x98,
  1707. 0xba, 0xc7, 0x7a, 0x77, 0x17, 0x94, 0x28, 0x63 },
  1708. .klen = 24,
  1709. .input = { [0 ... 15] = 0x00 },
  1710. .ilen = 16,
  1711. .result = { 0x1b, 0x38, 0x6c, 0x02, 0x10, 0xdc, 0xad, 0xcb,
  1712. 0xdd, 0x0e, 0x41, 0xaa, 0x08, 0xa7, 0xa7, 0xe8 },
  1713. .rlen = 16,
  1714. }, {
  1715. .key = { 0x23, 0x42, 0xbb, 0x9e, 0xfa, 0x38, 0x54, 0x2c,
  1716. 0xbe, 0xd0, 0xac, 0x83, 0x94, 0x0a, 0xc2, 0x98,
  1717. 0x8d, 0x7c, 0x47, 0xce, 0x26, 0x49, 0x08, 0x46,
  1718. 0x1c, 0xc1, 0xb5, 0x13, 0x7a, 0xe6, 0xb6, 0x04 },
  1719. .klen = 32,
  1720. .input = { [0 ... 15] = 0x00 },
  1721. .ilen = 16,
  1722. .result = { 0x4f, 0x6a, 0x20, 0x38, 0x28, 0x68, 0x97, 0xb9,
  1723. 0xc9, 0x87, 0x01, 0x36, 0x55, 0x33, 0x17, 0xfa },
  1724. .rlen = 16,
  1725. },
  1726. };
  1727. static struct cipher_testvec cast6_dec_tv_template[] = {
  1728. {
  1729. .key = { 0x23, 0x42, 0xbb, 0x9e, 0xfa, 0x38, 0x54, 0x2c,
  1730. 0x0a, 0xf7, 0x56, 0x47, 0xf2, 0x9f, 0x61, 0x5d },
  1731. .klen = 16,
  1732. .input = { 0xc8, 0x42, 0xa0, 0x89, 0x72, 0xb4, 0x3d, 0x20,
  1733. 0x83, 0x6c, 0x91, 0xd1, 0xb7, 0x53, 0x0f, 0x6b },
  1734. .ilen = 16,
  1735. .result = { [0 ... 15] = 0x00 },
  1736. .rlen = 16,
  1737. }, {
  1738. .key = { 0x23, 0x42, 0xbb, 0x9e, 0xfa, 0x38, 0x54, 0x2c,
  1739. 0xbe, 0xd0, 0xac, 0x83, 0x94, 0x0a, 0xc2, 0x98,
  1740. 0xba, 0xc7, 0x7a, 0x77, 0x17, 0x94, 0x28, 0x63 },
  1741. .klen = 24,
  1742. .input = { 0x1b, 0x38, 0x6c, 0x02, 0x10, 0xdc, 0xad, 0xcb,
  1743. 0xdd, 0x0e, 0x41, 0xaa, 0x08, 0xa7, 0xa7, 0xe8 },
  1744. .ilen = 16,
  1745. .result = { [0 ... 15] = 0x00 },
  1746. .rlen = 16,
  1747. }, {
  1748. .key = { 0x23, 0x42, 0xbb, 0x9e, 0xfa, 0x38, 0x54, 0x2c,
  1749. 0xbe, 0xd0, 0xac, 0x83, 0x94, 0x0a, 0xc2, 0x98,
  1750. 0x8d, 0x7c, 0x47, 0xce, 0x26, 0x49, 0x08, 0x46,
  1751. 0x1c, 0xc1, 0xb5, 0x13, 0x7a, 0xe6, 0xb6, 0x04 },
  1752. .klen = 32,
  1753. .input = { 0x4f, 0x6a, 0x20, 0x38, 0x28, 0x68, 0x97, 0xb9,
  1754. 0xc9, 0x87, 0x01, 0x36, 0x55, 0x33, 0x17, 0xfa },
  1755. .ilen = 16,
  1756. .result = { [0 ... 15] = 0x00 },
  1757. .rlen = 16,
  1758. },
  1759. };
  1760. /*
  1761. * AES test vectors.
  1762. */
  1763. #define AES_ENC_TEST_VECTORS 3
  1764. #define AES_DEC_TEST_VECTORS 3
  1765. #define AES_CBC_ENC_TEST_VECTORS 2
  1766. #define AES_CBC_DEC_TEST_VECTORS 2
  1767. static struct cipher_testvec aes_enc_tv_template[] = {
  1768. { /* From FIPS-197 */
  1769. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1770. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1771. .klen = 16,
  1772. .input = { 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77,
  1773. 0x88, 0x99, 0xaa, 0xbb, 0xcc, 0xdd, 0xee, 0xff },
  1774. .ilen = 16,
  1775. .result = { 0x69, 0xc4, 0xe0, 0xd8, 0x6a, 0x7b, 0x04, 0x30,
  1776. 0xd8, 0xcd, 0xb7, 0x80, 0x70, 0xb4, 0xc5, 0x5a },
  1777. .rlen = 16,
  1778. }, {
  1779. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1780. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f,
  1781. 0x10, 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17 },
  1782. .klen = 24,
  1783. .input = { 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77,
  1784. 0x88, 0x99, 0xaa, 0xbb, 0xcc, 0xdd, 0xee, 0xff },
  1785. .ilen = 16,
  1786. .result = { 0xdd, 0xa9, 0x7c, 0xa4, 0x86, 0x4c, 0xdf, 0xe0,
  1787. 0x6e, 0xaf, 0x70, 0xa0, 0xec, 0x0d, 0x71, 0x91 },
  1788. .rlen = 16,
  1789. }, {
  1790. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1791. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f,
  1792. 0x10, 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17,
  1793. 0x18, 0x19, 0x1a, 0x1b, 0x1c, 0x1d, 0x1e, 0x1f },
  1794. .klen = 32,
  1795. .input = { 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77,
  1796. 0x88, 0x99, 0xaa, 0xbb, 0xcc, 0xdd, 0xee, 0xff },
  1797. .ilen = 16,
  1798. .result = { 0x8e, 0xa2, 0xb7, 0xca, 0x51, 0x67, 0x45, 0xbf,
  1799. 0xea, 0xfc, 0x49, 0x90, 0x4b, 0x49, 0x60, 0x89 },
  1800. .rlen = 16,
  1801. },
  1802. };
  1803. static struct cipher_testvec aes_dec_tv_template[] = {
  1804. { /* From FIPS-197 */
  1805. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1806. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f },
  1807. .klen = 16,
  1808. .input = { 0x69, 0xc4, 0xe0, 0xd8, 0x6a, 0x7b, 0x04, 0x30,
  1809. 0xd8, 0xcd, 0xb7, 0x80, 0x70, 0xb4, 0xc5, 0x5a },
  1810. .ilen = 16,
  1811. .result = { 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77,
  1812. 0x88, 0x99, 0xaa, 0xbb, 0xcc, 0xdd, 0xee, 0xff },
  1813. .rlen = 16,
  1814. }, {
  1815. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1816. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f,
  1817. 0x10, 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17 },
  1818. .klen = 24,
  1819. .input = { 0xdd, 0xa9, 0x7c, 0xa4, 0x86, 0x4c, 0xdf, 0xe0,
  1820. 0x6e, 0xaf, 0x70, 0xa0, 0xec, 0x0d, 0x71, 0x91 },
  1821. .ilen = 16,
  1822. .result = { 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77,
  1823. 0x88, 0x99, 0xaa, 0xbb, 0xcc, 0xdd, 0xee, 0xff },
  1824. .rlen = 16,
  1825. }, {
  1826. .key = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1827. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f,
  1828. 0x10, 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17,
  1829. 0x18, 0x19, 0x1a, 0x1b, 0x1c, 0x1d, 0x1e, 0x1f },
  1830. .klen = 32,
  1831. .input = { 0x8e, 0xa2, 0xb7, 0xca, 0x51, 0x67, 0x45, 0xbf,
  1832. 0xea, 0xfc, 0x49, 0x90, 0x4b, 0x49, 0x60, 0x89 },
  1833. .ilen = 16,
  1834. .result = { 0x00, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77,
  1835. 0x88, 0x99, 0xaa, 0xbb, 0xcc, 0xdd, 0xee, 0xff },
  1836. .rlen = 16,
  1837. },
  1838. };
  1839. static struct cipher_testvec aes_cbc_enc_tv_template[] = {
  1840. { /* From RFC 3602 */
  1841. .key = { 0x06, 0xa9, 0x21, 0x40, 0x36, 0xb8, 0xa1, 0x5b,
  1842. 0x51, 0x2e, 0x03, 0xd5, 0x34, 0x12, 0x00, 0x06 },
  1843. .klen = 16,
  1844. .iv = { 0x3d, 0xaf, 0xba, 0x42, 0x9d, 0x9e, 0xb4, 0x30,
  1845. 0xb4, 0x22, 0xda, 0x80, 0x2c, 0x9f, 0xac, 0x41 },
  1846. .input = { "Single block msg" },
  1847. .ilen = 16,
  1848. .result = { 0xe3, 0x53, 0x77, 0x9c, 0x10, 0x79, 0xae, 0xb8,
  1849. 0x27, 0x08, 0x94, 0x2d, 0xbe, 0x77, 0x18, 0x1a },
  1850. .rlen = 16,
  1851. }, {
  1852. .key = { 0xc2, 0x86, 0x69, 0x6d, 0x88, 0x7c, 0x9a, 0xa0,
  1853. 0x61, 0x1b, 0xbb, 0x3e, 0x20, 0x25, 0xa4, 0x5a },
  1854. .klen = 16,
  1855. .iv = { 0x56, 0x2e, 0x17, 0x99, 0x6d, 0x09, 0x3d, 0x28,
  1856. 0xdd, 0xb3, 0xba, 0x69, 0x5a, 0x2e, 0x6f, 0x58 },
  1857. .input = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1858. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f,
  1859. 0x10, 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17,
  1860. 0x18, 0x19, 0x1a, 0x1b, 0x1c, 0x1d, 0x1e, 0x1f },
  1861. .ilen = 32,
  1862. .result = { 0xd2, 0x96, 0xcd, 0x94, 0xc2, 0xcc, 0xcf, 0x8a,
  1863. 0x3a, 0x86, 0x30, 0x28, 0xb5, 0xe1, 0xdc, 0x0a,
  1864. 0x75, 0x86, 0x60, 0x2d, 0x25, 0x3c, 0xff, 0xf9,
  1865. 0x1b, 0x82, 0x66, 0xbe, 0xa6, 0xd6, 0x1a, 0xb1 },
  1866. .rlen = 32,
  1867. },
  1868. };
  1869. static struct cipher_testvec aes_cbc_dec_tv_template[] = {
  1870. { /* From RFC 3602 */
  1871. .key = { 0x06, 0xa9, 0x21, 0x40, 0x36, 0xb8, 0xa1, 0x5b,
  1872. 0x51, 0x2e, 0x03, 0xd5, 0x34, 0x12, 0x00, 0x06 },
  1873. .klen = 16,
  1874. .iv = { 0x3d, 0xaf, 0xba, 0x42, 0x9d, 0x9e, 0xb4, 0x30,
  1875. 0xb4, 0x22, 0xda, 0x80, 0x2c, 0x9f, 0xac, 0x41 },
  1876. .input = { 0xe3, 0x53, 0x77, 0x9c, 0x10, 0x79, 0xae, 0xb8,
  1877. 0x27, 0x08, 0x94, 0x2d, 0xbe, 0x77, 0x18, 0x1a },
  1878. .ilen = 16,
  1879. .result = { "Single block msg" },
  1880. .rlen = 16,
  1881. }, {
  1882. .key = { 0xc2, 0x86, 0x69, 0x6d, 0x88, 0x7c, 0x9a, 0xa0,
  1883. 0x61, 0x1b, 0xbb, 0x3e, 0x20, 0x25, 0xa4, 0x5a },
  1884. .klen = 16,
  1885. .iv = { 0x56, 0x2e, 0x17, 0x99, 0x6d, 0x09, 0x3d, 0x28,
  1886. 0xdd, 0xb3, 0xba, 0x69, 0x5a, 0x2e, 0x6f, 0x58 },
  1887. .input = { 0xd2, 0x96, 0xcd, 0x94, 0xc2, 0xcc, 0xcf, 0x8a,
  1888. 0x3a, 0x86, 0x30, 0x28, 0xb5, 0xe1, 0xdc, 0x0a,
  1889. 0x75, 0x86, 0x60, 0x2d, 0x25, 0x3c, 0xff, 0xf9,
  1890. 0x1b, 0x82, 0x66, 0xbe, 0xa6, 0xd6, 0x1a, 0xb1 },
  1891. .ilen = 32,
  1892. .result = { 0x00, 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, 0x07,
  1893. 0x08, 0x09, 0x0a, 0x0b, 0x0c, 0x0d, 0x0e, 0x0f,
  1894. 0x10, 0x11, 0x12, 0x13, 0x14, 0x15, 0x16, 0x17,
  1895. 0x18, 0x19, 0x1a, 0x1b, 0x1c, 0x1d, 0x1e, 0x1f },
  1896. .rlen = 32,
  1897. },
  1898. };
  1899. /* Cast5 test vectors from RFC 2144 */
  1900. #define CAST5_ENC_TEST_VECTORS 3
  1901. #define CAST5_DEC_TEST_VECTORS 3
  1902. static struct cipher_testvec cast5_enc_tv_template[] = {
  1903. {
  1904. .key = { 0x01, 0x23, 0x45, 0x67, 0x12, 0x34, 0x56, 0x78,
  1905. 0x23, 0x45, 0x67, 0x89, 0x34, 0x56, 0x78, 0x9a },
  1906. .klen = 16,
  1907. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1908. .ilen = 8,
  1909. .result = { 0x23, 0x8b, 0x4f, 0xe5, 0x84, 0x7e, 0x44, 0xb2 },
  1910. .rlen = 8,
  1911. }, {
  1912. .key = { 0x01, 0x23, 0x45, 0x67, 0x12, 0x34, 0x56, 0x78,
  1913. 0x23, 0x45 },
  1914. .klen = 10,
  1915. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1916. .ilen = 8,
  1917. .result = { 0xeb, 0x6a, 0x71, 0x1a, 0x2c, 0x02, 0x27, 0x1b },
  1918. .rlen = 8,
  1919. }, {
  1920. .key = { 0x01, 0x23, 0x45, 0x67, 0x12 },
  1921. .klen = 5,
  1922. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1923. .ilen = 8,
  1924. .result = { 0x7a, 0xc8, 0x16, 0xd1, 0x6e, 0x9b, 0x30, 0x2e },
  1925. .rlen = 8,
  1926. },
  1927. };
  1928. static struct cipher_testvec cast5_dec_tv_template[] = {
  1929. {
  1930. .key = { 0x01, 0x23, 0x45, 0x67, 0x12, 0x34, 0x56, 0x78,
  1931. 0x23, 0x45, 0x67, 0x89, 0x34, 0x56, 0x78, 0x9a },
  1932. .klen = 16,
  1933. .input = { 0x23, 0x8b, 0x4f, 0xe5, 0x84, 0x7e, 0x44, 0xb2 },
  1934. .ilen = 8,
  1935. .result = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1936. .rlen = 8,
  1937. }, {
  1938. .key = { 0x01, 0x23, 0x45, 0x67, 0x12, 0x34, 0x56, 0x78,
  1939. 0x23, 0x45 },
  1940. .klen = 10,
  1941. .input = { 0xeb, 0x6a, 0x71, 0x1a, 0x2c, 0x02, 0x27, 0x1b },
  1942. .ilen = 8,
  1943. .result = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1944. .rlen = 8,
  1945. }, {
  1946. .key = { 0x01, 0x23, 0x45, 0x67, 0x12 },
  1947. .klen = 5,
  1948. .input = { 0x7a, 0xc8, 0x16, 0xd1, 0x6e, 0x9b, 0x30, 0x2e },
  1949. .ilen = 8,
  1950. .result = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1951. .rlen = 8,
  1952. },
  1953. };
  1954. /*
  1955. * ARC4 test vectors from OpenSSL
  1956. */
  1957. #define ARC4_ENC_TEST_VECTORS 7
  1958. #define ARC4_DEC_TEST_VECTORS 7
  1959. static struct cipher_testvec arc4_enc_tv_template[] = {
  1960. {
  1961. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1962. .klen = 8,
  1963. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1964. .ilen = 8,
  1965. .result = { 0x75, 0xb7, 0x87, 0x80, 0x99, 0xe0, 0xc5, 0x96 },
  1966. .rlen = 8,
  1967. }, {
  1968. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1969. .klen = 8,
  1970. .input = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1971. .ilen = 8,
  1972. .result = { 0x74, 0x94, 0xc2, 0xe7, 0x10, 0x4b, 0x08, 0x79 },
  1973. .rlen = 8,
  1974. }, {
  1975. .key = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1976. .klen = 8,
  1977. .input = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  1978. .ilen = 8,
  1979. .result = { 0xde, 0x18, 0x89, 0x41, 0xa3, 0x37, 0x5d, 0x3a },
  1980. .rlen = 8,
  1981. }, {
  1982. .key = { 0xef, 0x01, 0x23, 0x45},
  1983. .klen = 4,
  1984. .input = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  1985. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  1986. 0x00, 0x00, 0x00, 0x00 },
  1987. .ilen = 20,
  1988. .result = { 0xd6, 0xa1, 0x41, 0xa7, 0xec, 0x3c, 0x38, 0xdf,
  1989. 0xbd, 0x61, 0x5a, 0x11, 0x62, 0xe1, 0xc7, 0xba,
  1990. 0x36, 0xb6, 0x78, 0x58 },
  1991. .rlen = 20,
  1992. }, {
  1993. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  1994. .klen = 8,
  1995. .input = { 0x12, 0x34, 0x56, 0x78, 0x9A, 0xBC, 0xDE, 0xF0,
  1996. 0x12, 0x34, 0x56, 0x78, 0x9A, 0xBC, 0xDE, 0xF0,
  1997. 0x12, 0x34, 0x56, 0x78, 0x9A, 0xBC, 0xDE, 0xF0,
  1998. 0x12, 0x34, 0x56, 0x78 },
  1999. .ilen = 28,
  2000. .result = { 0x66, 0xa0, 0x94, 0x9f, 0x8a, 0xf7, 0xd6, 0x89,
  2001. 0x1f, 0x7f, 0x83, 0x2b, 0xa8, 0x33, 0xc0, 0x0c,
  2002. 0x89, 0x2e, 0xbe, 0x30, 0x14, 0x3c, 0xe2, 0x87,
  2003. 0x40, 0x01, 0x1e, 0xcf },
  2004. .rlen = 28,
  2005. }, {
  2006. .key = { 0xef, 0x01, 0x23, 0x45 },
  2007. .klen = 4,
  2008. .input = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  2009. 0x00, 0x00 },
  2010. .ilen = 10,
  2011. .result = { 0xd6, 0xa1, 0x41, 0xa7, 0xec, 0x3c, 0x38, 0xdf,
  2012. 0xbd, 0x61 },
  2013. .rlen = 10,
  2014. }, {
  2015. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF,
  2016. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  2017. .klen = 16,
  2018. .input = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF },
  2019. .ilen = 8,
  2020. .result = { 0x69, 0x72, 0x36, 0x59, 0x1B, 0x52, 0x42, 0xB1 },
  2021. .rlen = 8,
  2022. },
  2023. };
  2024. static struct cipher_testvec arc4_dec_tv_template[] = {
  2025. {
  2026. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  2027. .klen = 8,
  2028. .input = { 0x75, 0xb7, 0x87, 0x80, 0x99, 0xe0, 0xc5, 0x96 },
  2029. .ilen = 8,
  2030. .result = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  2031. .rlen = 8,
  2032. }, {
  2033. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  2034. .klen = 8,
  2035. .input = { 0x74, 0x94, 0xc2, 0xe7, 0x10, 0x4b, 0x08, 0x79 },
  2036. .ilen = 8,
  2037. .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  2038. .rlen = 8,
  2039. }, {
  2040. .key = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  2041. .klen = 8,
  2042. .input = { 0xde, 0x18, 0x89, 0x41, 0xa3, 0x37, 0x5d, 0x3a },
  2043. .ilen = 8,
  2044. .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  2045. .rlen = 8,
  2046. }, {
  2047. .key = { 0xef, 0x01, 0x23, 0x45},
  2048. .klen = 4,
  2049. .input = { 0xd6, 0xa1, 0x41, 0xa7, 0xec, 0x3c, 0x38, 0xdf,
  2050. 0xbd, 0x61, 0x5a, 0x11, 0x62, 0xe1, 0xc7, 0xba,
  2051. 0x36, 0xb6, 0x78, 0x58 },
  2052. .ilen = 20,
  2053. .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  2054. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  2055. 0x00, 0x00, 0x00, 0x00 },
  2056. .rlen = 20,
  2057. }, {
  2058. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xab, 0xcd, 0xef },
  2059. .klen = 8,
  2060. .input = { 0x66, 0xa0, 0x94, 0x9f, 0x8a, 0xf7, 0xd6, 0x89,
  2061. 0x1f, 0x7f, 0x83, 0x2b, 0xa8, 0x33, 0xc0, 0x0c,
  2062. 0x89, 0x2e, 0xbe, 0x30, 0x14, 0x3c, 0xe2, 0x87,
  2063. 0x40, 0x01, 0x1e, 0xcf },
  2064. .ilen = 28,
  2065. .result = { 0x12, 0x34, 0x56, 0x78, 0x9A, 0xBC, 0xDE, 0xF0,
  2066. 0x12, 0x34, 0x56, 0x78, 0x9A, 0xBC, 0xDE, 0xF0,
  2067. 0x12, 0x34, 0x56, 0x78, 0x9A, 0xBC, 0xDE, 0xF0,
  2068. 0x12, 0x34, 0x56, 0x78 },
  2069. .rlen = 28,
  2070. }, {
  2071. .key = { 0xef, 0x01, 0x23, 0x45 },
  2072. .klen = 4,
  2073. .input = { 0xd6, 0xa1, 0x41, 0xa7, 0xec, 0x3c, 0x38, 0xdf,
  2074. 0xbd, 0x61 },
  2075. .ilen = 10,
  2076. .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  2077. 0x00, 0x00 },
  2078. .rlen = 10,
  2079. }, {
  2080. .key = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF,
  2081. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  2082. .klen = 16,
  2083. .input = { 0x69, 0x72, 0x36, 0x59, 0x1B, 0x52, 0x42, 0xB1 },
  2084. .ilen = 8,
  2085. .result = { 0x01, 0x23, 0x45, 0x67, 0x89, 0xAB, 0xCD, 0xEF },
  2086. .rlen = 8,
  2087. },
  2088. };
  2089. /*
  2090. * TEA test vectors
  2091. */
  2092. #define TEA_ENC_TEST_VECTORS 4
  2093. #define TEA_DEC_TEST_VECTORS 4
  2094. static struct cipher_testvec tea_enc_tv_template[] = {
  2095. {
  2096. .key = { [0 ... 15] = 0x00 },
  2097. .klen = 16,
  2098. .input = { [0 ... 8] = 0x00 },
  2099. .ilen = 8,
  2100. .result = { 0x0a, 0x3a, 0xea, 0x41, 0x40, 0xa9, 0xba, 0x94 },
  2101. .rlen = 8,
  2102. }, {
  2103. .key = { 0x2b, 0x02, 0x05, 0x68, 0x06, 0x14, 0x49, 0x76,
  2104. 0x77, 0x5d, 0x0e, 0x26, 0x6c, 0x28, 0x78, 0x43 },
  2105. .klen = 16,
  2106. .input = { 0x74, 0x65, 0x73, 0x74, 0x20, 0x6d, 0x65, 0x2e },
  2107. .ilen = 8,
  2108. .result = { 0x77, 0x5d, 0x2a, 0x6a, 0xf6, 0xce, 0x92, 0x09 },
  2109. .rlen = 8,
  2110. }, {
  2111. .key = { 0x09, 0x65, 0x43, 0x11, 0x66, 0x44, 0x39, 0x25,
  2112. 0x51, 0x3a, 0x16, 0x10, 0x0a, 0x08, 0x12, 0x6e },
  2113. .klen = 16,
  2114. .input = { 0x6c, 0x6f, 0x6e, 0x67, 0x65, 0x72, 0x5f, 0x74,
  2115. 0x65, 0x73, 0x74, 0x5f, 0x76, 0x65, 0x63, 0x74 },
  2116. .ilen = 16,
  2117. .result = { 0xbe, 0x7a, 0xbb, 0x81, 0x95, 0x2d, 0x1f, 0x1e,
  2118. 0xdd, 0x89, 0xa1, 0x25, 0x04, 0x21, 0xdf, 0x95 },
  2119. .rlen = 16,
  2120. }, {
  2121. .key = { 0x4d, 0x76, 0x32, 0x17, 0x05, 0x3f, 0x75, 0x2c,
  2122. 0x5d, 0x04, 0x16, 0x36, 0x15, 0x72, 0x63, 0x2f },
  2123. .klen = 16,
  2124. .input = { 0x54, 0x65, 0x61, 0x20, 0x69, 0x73, 0x20, 0x67,
  2125. 0x6f, 0x6f, 0x64, 0x20, 0x66, 0x6f, 0x72, 0x20,
  2126. 0x79, 0x6f, 0x75, 0x21, 0x21, 0x21, 0x20, 0x72,
  2127. 0x65, 0x61, 0x6c, 0x6c, 0x79, 0x21, 0x21, 0x21 },
  2128. .ilen = 32,
  2129. .result = { 0xe0, 0x4d, 0x5d, 0x3c, 0xb7, 0x8c, 0x36, 0x47,
  2130. 0x94, 0x18, 0x95, 0x91, 0xa9, 0xfc, 0x49, 0xf8,
  2131. 0x44, 0xd1, 0x2d, 0xc2, 0x99, 0xb8, 0x08, 0x2a,
  2132. 0x07, 0x89, 0x73, 0xc2, 0x45, 0x92, 0xc6, 0x90 },
  2133. .rlen = 32,
  2134. }
  2135. };
  2136. static struct cipher_testvec tea_dec_tv_template[] = {
  2137. {
  2138. .key = { [0 ... 15] = 0x00 },
  2139. .klen = 16,
  2140. .input = { 0x0a, 0x3a, 0xea, 0x41, 0x40, 0xa9, 0xba, 0x94 },
  2141. .ilen = 8,
  2142. .result = { [0 ... 8] = 0x00 },
  2143. .rlen = 8,
  2144. }, {
  2145. .key = { 0x2b, 0x02, 0x05, 0x68, 0x06, 0x14, 0x49, 0x76,
  2146. 0x77, 0x5d, 0x0e, 0x26, 0x6c, 0x28, 0x78, 0x43 },
  2147. .klen = 16,
  2148. .input = { 0x77, 0x5d, 0x2a, 0x6a, 0xf6, 0xce, 0x92, 0x09 },
  2149. .ilen = 8,
  2150. .result = { 0x74, 0x65, 0x73, 0x74, 0x20, 0x6d, 0x65, 0x2e },
  2151. .rlen = 8,
  2152. }, {
  2153. .key = { 0x09, 0x65, 0x43, 0x11, 0x66, 0x44, 0x39, 0x25,
  2154. 0x51, 0x3a, 0x16, 0x10, 0x0a, 0x08, 0x12, 0x6e },
  2155. .klen = 16,
  2156. .input = { 0xbe, 0x7a, 0xbb, 0x81, 0x95, 0x2d, 0x1f, 0x1e,
  2157. 0xdd, 0x89, 0xa1, 0x25, 0x04, 0x21, 0xdf, 0x95 },
  2158. .ilen = 16,
  2159. .result = { 0x6c, 0x6f, 0x6e, 0x67, 0x65, 0x72, 0x5f, 0x74,
  2160. 0x65, 0x73, 0x74, 0x5f, 0x76, 0x65, 0x63, 0x74 },
  2161. .rlen = 16,
  2162. }, {
  2163. .key = { 0x4d, 0x76, 0x32, 0x17, 0x05, 0x3f, 0x75, 0x2c,
  2164. 0x5d, 0x04, 0x16, 0x36, 0x15, 0x72, 0x63, 0x2f },
  2165. .klen = 16,
  2166. .input = { 0xe0, 0x4d, 0x5d, 0x3c, 0xb7, 0x8c, 0x36, 0x47,
  2167. 0x94, 0x18, 0x95, 0x91, 0xa9, 0xfc, 0x49, 0xf8,
  2168. 0x44, 0xd1, 0x2d, 0xc2, 0x99, 0xb8, 0x08, 0x2a,
  2169. 0x07, 0x89, 0x73, 0xc2, 0x45, 0x92, 0xc6, 0x90 },
  2170. .ilen = 32,
  2171. .result = { 0x54, 0x65, 0x61, 0x20, 0x69, 0x73, 0x20, 0x67,
  2172. 0x6f, 0x6f, 0x64, 0x20, 0x66, 0x6f, 0x72, 0x20,
  2173. 0x79, 0x6f, 0x75, 0x21, 0x21, 0x21, 0x20, 0x72,
  2174. 0x65, 0x61, 0x6c, 0x6c, 0x79, 0x21, 0x21, 0x21 },
  2175. .rlen = 32,
  2176. }
  2177. };
  2178. /*
  2179. * XTEA test vectors
  2180. */
  2181. #define XTEA_ENC_TEST_VECTORS 4
  2182. #define XTEA_DEC_TEST_VECTORS 4
  2183. static struct cipher_testvec xtea_enc_tv_template[] = {
  2184. {
  2185. .key = { [0 ... 15] = 0x00 },
  2186. .klen = 16,
  2187. .input = { [0 ... 8] = 0x00 },
  2188. .ilen = 8,
  2189. .result = { 0xd8, 0xd4, 0xe9, 0xde, 0xd9, 0x1e, 0x13, 0xf7 },
  2190. .rlen = 8,
  2191. }, {
  2192. .key = { 0x2b, 0x02, 0x05, 0x68, 0x06, 0x14, 0x49, 0x76,
  2193. 0x77, 0x5d, 0x0e, 0x26, 0x6c, 0x28, 0x78, 0x43 },
  2194. .klen = 16,
  2195. .input = { 0x74, 0x65, 0x73, 0x74, 0x20, 0x6d, 0x65, 0x2e },
  2196. .ilen = 8,
  2197. .result = { 0x94, 0xeb, 0xc8, 0x96, 0x84, 0x6a, 0x49, 0xa8 },
  2198. .rlen = 8,
  2199. }, {
  2200. .key = { 0x09, 0x65, 0x43, 0x11, 0x66, 0x44, 0x39, 0x25,
  2201. 0x51, 0x3a, 0x16, 0x10, 0x0a, 0x08, 0x12, 0x6e },
  2202. .klen = 16,
  2203. .input = { 0x3e, 0xce, 0xae, 0x22, 0x60, 0x56, 0xa8, 0x9d,
  2204. 0x65, 0x73, 0x74, 0x5f, 0x76, 0x65, 0x63, 0x74 },
  2205. .ilen = 16,
  2206. .result = { 0xe2, 0x04, 0xdb, 0xf2, 0x89, 0x85, 0x9e, 0xea,
  2207. 0x61, 0x35, 0xaa, 0xed, 0xb5, 0xcb, 0x71, 0x2c },
  2208. .rlen = 16,
  2209. }, {
  2210. .key = { 0x4d, 0x76, 0x32, 0x17, 0x05, 0x3f, 0x75, 0x2c,
  2211. 0x5d, 0x04, 0x16, 0x36, 0x15, 0x72, 0x63, 0x2f },
  2212. .klen = 16,
  2213. .input = { 0x54, 0x65, 0x61, 0x20, 0x69, 0x73, 0x20, 0x67,
  2214. 0x6f, 0x6f, 0x64, 0x20, 0x66, 0x6f, 0x72, 0x20,
  2215. 0x79, 0x6f, 0x75, 0x21, 0x21, 0x21, 0x20, 0x72,
  2216. 0x65, 0x61, 0x6c, 0x6c, 0x79, 0x21, 0x21, 0x21 },
  2217. .ilen = 32,
  2218. .result = { 0x99, 0x81, 0x9f, 0x5d, 0x6f, 0x4b, 0x31, 0x3a,
  2219. 0x86, 0xff, 0x6f, 0xd0, 0xe3, 0x87, 0x70, 0x07,
  2220. 0x4d, 0xb8, 0xcf, 0xf3, 0x99, 0x50, 0xb3, 0xd4,
  2221. 0x73, 0xa2, 0xfa, 0xc9, 0x16, 0x59, 0x5d, 0x81 },
  2222. .rlen = 32,
  2223. }
  2224. };
  2225. static struct cipher_testvec xtea_dec_tv_template[] = {
  2226. {
  2227. .key = { [0 ... 15] = 0x00 },
  2228. .klen = 16,
  2229. .input = { 0xd8, 0xd4, 0xe9, 0xde, 0xd9, 0x1e, 0x13, 0xf7 },
  2230. .ilen = 8,
  2231. .result = { [0 ... 8] = 0x00 },
  2232. .rlen = 8,
  2233. }, {
  2234. .key = { 0x2b, 0x02, 0x05, 0x68, 0x06, 0x14, 0x49, 0x76,
  2235. 0x77, 0x5d, 0x0e, 0x26, 0x6c, 0x28, 0x78, 0x43 },
  2236. .klen = 16,
  2237. .input = { 0x94, 0xeb, 0xc8, 0x96, 0x84, 0x6a, 0x49, 0xa8 },
  2238. .ilen = 8,
  2239. .result = { 0x74, 0x65, 0x73, 0x74, 0x20, 0x6d, 0x65, 0x2e },
  2240. .rlen = 8,
  2241. }, {
  2242. .key = { 0x09, 0x65, 0x43, 0x11, 0x66, 0x44, 0x39, 0x25,
  2243. 0x51, 0x3a, 0x16, 0x10, 0x0a, 0x08, 0x12, 0x6e },
  2244. .klen = 16,
  2245. .input = { 0x3e, 0xce, 0xae, 0x22, 0x60, 0x56, 0xa8, 0x9d,
  2246. 0x77, 0x4d, 0xd4, 0xb4, 0x87, 0x24, 0xe3, 0x9a },
  2247. .ilen = 16,
  2248. .result = { 0x6c, 0x6f, 0x6e, 0x67, 0x65, 0x72, 0x5f, 0x74,
  2249. 0x65, 0x73, 0x74, 0x5f, 0x76, 0x65, 0x63, 0x74 },
  2250. .rlen = 16,
  2251. }, {
  2252. .key = { 0x4d, 0x76, 0x32, 0x17, 0x05, 0x3f, 0x75, 0x2c,
  2253. 0x5d, 0x04, 0x16, 0x36, 0x15, 0x72, 0x63, 0x2f },
  2254. .klen = 16,
  2255. .input = { 0x99, 0x81, 0x9f, 0x5d, 0x6f, 0x4b, 0x31, 0x3a,
  2256. 0x86, 0xff, 0x6f, 0xd0, 0xe3, 0x87, 0x70, 0x07,
  2257. 0x4d, 0xb8, 0xcf, 0xf3, 0x99, 0x50, 0xb3, 0xd4,
  2258. 0x73, 0xa2, 0xfa, 0xc9, 0x16, 0x59, 0x5d, 0x81 },
  2259. .ilen = 32,
  2260. .result = { 0x54, 0x65, 0x61, 0x20, 0x69, 0x73, 0x20, 0x67,
  2261. 0x6f, 0x6f, 0x64, 0x20, 0x66, 0x6f, 0x72, 0x20,
  2262. 0x79, 0x6f, 0x75, 0x21, 0x21, 0x21, 0x20, 0x72,
  2263. 0x65, 0x61, 0x6c, 0x6c, 0x79, 0x21, 0x21, 0x21 },
  2264. .rlen = 32,
  2265. }
  2266. };
  2267. /*
  2268. * KHAZAD test vectors.
  2269. */
  2270. #define KHAZAD_ENC_TEST_VECTORS 5
  2271. #define KHAZAD_DEC_TEST_VECTORS 5
  2272. static struct cipher_testvec khazad_enc_tv_template[] = {
  2273. {
  2274. .key = { 0x80, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  2275. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  2276. .klen = 16,
  2277. .input = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  2278. .ilen = 8,
  2279. .result = { 0x49, 0xa4, 0xce, 0x32, 0xac, 0x19, 0x0e, 0x3f },
  2280. .rlen = 8,
  2281. }, {
  2282. .key = { 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38,
  2283. 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38 },
  2284. .klen = 16,
  2285. .input = { 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38 },
  2286. .ilen = 8,
  2287. .result = { 0x7e, 0x82, 0x12, 0xa1, 0Xd9, 0X5b, 0Xe4, 0Xf9 },
  2288. .rlen = 8,
  2289. }, {
  2290. .key = { 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2,
  2291. 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2 },
  2292. .klen = 16,
  2293. .input = { 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2 },
  2294. .ilen = 8,
  2295. .result = { 0Xaa, 0Xbe, 0Xc1, 0X95, 0Xc5, 0X94, 0X1a, 0X9c },
  2296. .rlen = 8,
  2297. }, {
  2298. .key = { 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f,
  2299. 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f },
  2300. .klen = 16,
  2301. .input = { 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f },
  2302. .ilen = 8,
  2303. .result = { 0X04, 0X74, 0Xf5, 0X70, 0X50, 0X16, 0Xd3, 0Xb8 },
  2304. .rlen = 8,
  2305. }, {
  2306. .key = { 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f,
  2307. 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f },
  2308. .klen = 16,
  2309. .input = { 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f ,
  2310. 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f },
  2311. .ilen = 16,
  2312. .result = { 0X04, 0X74, 0Xf5, 0X70, 0X50, 0X16, 0Xd3, 0Xb8 ,
  2313. 0X04, 0X74, 0Xf5, 0X70, 0X50, 0X16, 0Xd3, 0Xb8 },
  2314. .rlen = 16,
  2315. },
  2316. };
  2317. static struct cipher_testvec khazad_dec_tv_template[] = {
  2318. {
  2319. .key = { 0x80, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  2320. 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  2321. .klen = 16,
  2322. .input = { 0X49, 0Xa4, 0Xce, 0X32, 0Xac, 0X19, 0X0e, 0X3f },
  2323. .ilen = 8,
  2324. .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  2325. .rlen = 8,
  2326. }, {
  2327. .key = { 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38,
  2328. 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38 },
  2329. .klen = 16,
  2330. .input = { 0X7e, 0X82, 0X12, 0Xa1, 0Xd9, 0X5b, 0Xe4, 0Xf9 },
  2331. .ilen = 8,
  2332. .result = { 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38, 0x38 },
  2333. .rlen = 8,
  2334. }, {
  2335. .key = { 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2,
  2336. 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2 },
  2337. .klen = 16,
  2338. .input = { 0Xaa, 0Xbe, 0Xc1, 0X95, 0Xc5, 0X94, 0X1a, 0X9c },
  2339. .ilen = 8,
  2340. .result = { 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2, 0Xa2 },
  2341. .rlen = 8,
  2342. }, {
  2343. .key = { 0x2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f,
  2344. 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f },
  2345. .klen = 16,
  2346. .input = { 0X04, 0X74, 0Xf5, 0X70, 0X50, 0X16, 0Xd3, 0Xb8 },
  2347. .ilen = 8,
  2348. .result = { 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f },
  2349. .rlen = 8,
  2350. }, {
  2351. .key = { 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f,
  2352. 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f },
  2353. .klen = 16,
  2354. .input = { 0X04, 0X74, 0Xf5, 0X70, 0X50, 0X16, 0Xd3, 0Xb8 ,
  2355. 0X04, 0X74, 0Xf5, 0X70, 0X50, 0X16, 0Xd3, 0Xb8 },
  2356. .ilen = 16,
  2357. .result = { 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f ,
  2358. 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f, 0X2f },
  2359. .rlen = 16,
  2360. },
  2361. };
  2362. /*
  2363. * Anubis test vectors.
  2364. */
  2365. #define ANUBIS_ENC_TEST_VECTORS 5
  2366. #define ANUBIS_DEC_TEST_VECTORS 5
  2367. #define ANUBIS_CBC_ENC_TEST_VECTORS 2
  2368. #define ANUBIS_CBC_DEC_TEST_VECTORS 2
  2369. static struct cipher_testvec anubis_enc_tv_template[] = {
  2370. {
  2371. .key = { 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2372. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe },
  2373. .klen = 16,
  2374. .input = { 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2375. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe },
  2376. .ilen = 16,
  2377. .result = { 0x6d, 0xc5, 0xda, 0xa2, 0x26, 0x7d, 0x62, 0x6f,
  2378. 0x08, 0xb7, 0x52, 0x8e, 0x6e, 0x6e, 0x86, 0x90 },
  2379. .rlen = 16,
  2380. }, {
  2381. .key = { 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03,
  2382. 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03,
  2383. 0x03, 0x03, 0x03, 0x03 },
  2384. .klen = 20,
  2385. .input = { 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03,
  2386. 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03 },
  2387. .ilen = 16,
  2388. .result = { 0xdb, 0xf1, 0x42, 0xf4, 0xd1, 0x8a, 0xc7, 0x49,
  2389. 0x87, 0x41, 0x6f, 0x82, 0x0a, 0x98, 0x64, 0xae },
  2390. .rlen = 16,
  2391. }, {
  2392. .key = { 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24,
  2393. 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24,
  2394. 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24,
  2395. 0x24, 0x24, 0x24, 0x24 },
  2396. .klen = 28,
  2397. .input = { 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24,
  2398. 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24 },
  2399. .ilen = 16,
  2400. .result = { 0xfd, 0x1b, 0x4a, 0xe3, 0xbf, 0xf0, 0xad, 0x3d,
  2401. 0x06, 0xd3, 0x61, 0x27, 0xfd, 0x13, 0x9e, 0xde },
  2402. .rlen = 16,
  2403. }, {
  2404. .key = { 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25,
  2405. 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25,
  2406. 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25,
  2407. 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25 },
  2408. .klen = 32,
  2409. .input = { 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25,
  2410. 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25 },
  2411. .ilen = 16,
  2412. .result = { 0x1a, 0x91, 0xfb, 0x2b, 0xb7, 0x78, 0x6b, 0xc4,
  2413. 0x17, 0xd9, 0xff, 0x40, 0x3b, 0x0e, 0xe5, 0xfe },
  2414. .rlen = 16,
  2415. }, {
  2416. .key = { 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2417. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2418. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2419. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2420. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35 },
  2421. .klen = 40,
  2422. .input = { 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2423. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35 },
  2424. .ilen = 16,
  2425. .result = { 0xa5, 0x2c, 0x85, 0x6f, 0x9c, 0xba, 0xa0, 0x97,
  2426. 0x9e, 0xc6, 0x84, 0x0f, 0x17, 0x21, 0x07, 0xee },
  2427. .rlen = 16,
  2428. },
  2429. };
  2430. static struct cipher_testvec anubis_dec_tv_template[] = {
  2431. {
  2432. .key = { 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2433. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe },
  2434. .klen = 16,
  2435. .input = { 0x6d, 0xc5, 0xda, 0xa2, 0x26, 0x7d, 0x62, 0x6f,
  2436. 0x08, 0xb7, 0x52, 0x8e, 0x6e, 0x6e, 0x86, 0x90 },
  2437. .ilen = 16,
  2438. .result = { 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2439. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe },
  2440. .rlen = 16,
  2441. }, {
  2442. .key = { 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03,
  2443. 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03,
  2444. 0x03, 0x03, 0x03, 0x03 },
  2445. .klen = 20,
  2446. .input = { 0xdb, 0xf1, 0x42, 0xf4, 0xd1, 0x8a, 0xc7, 0x49,
  2447. 0x87, 0x41, 0x6f, 0x82, 0x0a, 0x98, 0x64, 0xae },
  2448. .ilen = 16,
  2449. .result = { 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03,
  2450. 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03, 0x03 },
  2451. .rlen = 16,
  2452. }, {
  2453. .key = { 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24,
  2454. 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24,
  2455. 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24,
  2456. 0x24, 0x24, 0x24, 0x24 },
  2457. .klen = 28,
  2458. .input = { 0xfd, 0x1b, 0x4a, 0xe3, 0xbf, 0xf0, 0xad, 0x3d,
  2459. 0x06, 0xd3, 0x61, 0x27, 0xfd, 0x13, 0x9e, 0xde },
  2460. .ilen = 16,
  2461. .result = { 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24,
  2462. 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24, 0x24 },
  2463. .rlen = 16,
  2464. }, {
  2465. .key = { 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25,
  2466. 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25,
  2467. 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25,
  2468. 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25 },
  2469. .klen = 32,
  2470. .input = { 0x1a, 0x91, 0xfb, 0x2b, 0xb7, 0x78, 0x6b, 0xc4,
  2471. 0x17, 0xd9, 0xff, 0x40, 0x3b, 0x0e, 0xe5, 0xfe },
  2472. .ilen = 16,
  2473. .result = { 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25,
  2474. 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25, 0x25 },
  2475. .rlen = 16,
  2476. }, {
  2477. .key = { 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2478. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2479. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2480. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2481. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35 },
  2482. .input = { 0xa5, 0x2c, 0x85, 0x6f, 0x9c, 0xba, 0xa0, 0x97,
  2483. 0x9e, 0xc6, 0x84, 0x0f, 0x17, 0x21, 0x07, 0xee },
  2484. .klen = 40,
  2485. .ilen = 16,
  2486. .result = { 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2487. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35 },
  2488. .rlen = 16,
  2489. },
  2490. };
  2491. static struct cipher_testvec anubis_cbc_enc_tv_template[] = {
  2492. {
  2493. .key = { 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2494. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe },
  2495. .klen = 16,
  2496. .input = { 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2497. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2498. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2499. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe },
  2500. .ilen = 32,
  2501. .result = { 0x6d, 0xc5, 0xda, 0xa2, 0x26, 0x7d, 0x62, 0x6f,
  2502. 0x08, 0xb7, 0x52, 0x8e, 0x6e, 0x6e, 0x86, 0x90,
  2503. 0x86, 0xd8, 0xb5, 0x6f, 0x98, 0x5e, 0x8a, 0x66,
  2504. 0x4f, 0x1f, 0x78, 0xa1, 0xbb, 0x37, 0xf1, 0xbe },
  2505. .rlen = 32,
  2506. }, {
  2507. .key = { 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2508. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2509. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2510. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2511. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35 },
  2512. .klen = 40,
  2513. .input = { 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2514. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2515. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2516. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35 },
  2517. .ilen = 32,
  2518. .result = { 0xa5, 0x2c, 0x85, 0x6f, 0x9c, 0xba, 0xa0, 0x97,
  2519. 0x9e, 0xc6, 0x84, 0x0f, 0x17, 0x21, 0x07, 0xee,
  2520. 0xa2, 0xbc, 0x06, 0x98, 0xc6, 0x4b, 0xda, 0x75,
  2521. 0x2e, 0xaa, 0xbe, 0x58, 0xce, 0x01, 0x5b, 0xc7 },
  2522. .rlen = 32,
  2523. },
  2524. };
  2525. static struct cipher_testvec anubis_cbc_dec_tv_template[] = {
  2526. {
  2527. .key = { 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2528. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe },
  2529. .klen = 16,
  2530. .input = { 0x6d, 0xc5, 0xda, 0xa2, 0x26, 0x7d, 0x62, 0x6f,
  2531. 0x08, 0xb7, 0x52, 0x8e, 0x6e, 0x6e, 0x86, 0x90,
  2532. 0x86, 0xd8, 0xb5, 0x6f, 0x98, 0x5e, 0x8a, 0x66,
  2533. 0x4f, 0x1f, 0x78, 0xa1, 0xbb, 0x37, 0xf1, 0xbe },
  2534. .ilen = 32,
  2535. .result = { 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2536. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2537. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe,
  2538. 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe, 0xfe },
  2539. .rlen = 32,
  2540. }, {
  2541. .key = { 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2542. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2543. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2544. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2545. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35 },
  2546. .klen = 40,
  2547. .input = { 0xa5, 0x2c, 0x85, 0x6f, 0x9c, 0xba, 0xa0, 0x97,
  2548. 0x9e, 0xc6, 0x84, 0x0f, 0x17, 0x21, 0x07, 0xee,
  2549. 0xa2, 0xbc, 0x06, 0x98, 0xc6, 0x4b, 0xda, 0x75,
  2550. 0x2e, 0xaa, 0xbe, 0x58, 0xce, 0x01, 0x5b, 0xc7 },
  2551. .ilen = 32,
  2552. .result = { 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2553. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2554. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35,
  2555. 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35, 0x35 },
  2556. .rlen = 32,
  2557. },
  2558. };
  2559. /*
  2560. * XETA test vectors
  2561. */
  2562. #define XETA_ENC_TEST_VECTORS 4
  2563. #define XETA_DEC_TEST_VECTORS 4
  2564. static struct cipher_testvec xeta_enc_tv_template[] = {
  2565. {
  2566. .key = { [0 ... 15] = 0x00 },
  2567. .klen = 16,
  2568. .input = { [0 ... 8] = 0x00 },
  2569. .ilen = 8,
  2570. .result = { 0xaa, 0x22, 0x96, 0xe5, 0x6c, 0x61, 0xf3, 0x45 },
  2571. .rlen = 8,
  2572. }, {
  2573. .key = { 0x2b, 0x02, 0x05, 0x68, 0x06, 0x14, 0x49, 0x76,
  2574. 0x77, 0x5d, 0x0e, 0x26, 0x6c, 0x28, 0x78, 0x43 },
  2575. .klen = 16,
  2576. .input = { 0x74, 0x65, 0x73, 0x74, 0x20, 0x6d, 0x65, 0x2e },
  2577. .ilen = 8,
  2578. .result = { 0x82, 0x3e, 0xeb, 0x35, 0xdc, 0xdd, 0xd9, 0xc3 },
  2579. .rlen = 8,
  2580. }, {
  2581. .key = { 0x09, 0x65, 0x43, 0x11, 0x66, 0x44, 0x39, 0x25,
  2582. 0x51, 0x3a, 0x16, 0x10, 0x0a, 0x08, 0x12, 0x6e },
  2583. .klen = 16,
  2584. .input = { 0x6c, 0x6f, 0x6e, 0x67, 0x65, 0x72, 0x5f, 0x74,
  2585. 0x65, 0x73, 0x74, 0x5f, 0x76, 0x65, 0x63, 0x74 },
  2586. .ilen = 16,
  2587. .result = { 0xe2, 0x04, 0xdb, 0xf2, 0x89, 0x85, 0x9e, 0xea,
  2588. 0x61, 0x35, 0xaa, 0xed, 0xb5, 0xcb, 0x71, 0x2c },
  2589. .rlen = 16,
  2590. }, {
  2591. .key = { 0x4d, 0x76, 0x32, 0x17, 0x05, 0x3f, 0x75, 0x2c,
  2592. 0x5d, 0x04, 0x16, 0x36, 0x15, 0x72, 0x63, 0x2f },
  2593. .klen = 16,
  2594. .input = { 0x54, 0x65, 0x61, 0x20, 0x69, 0x73, 0x20, 0x67,
  2595. 0x6f, 0x6f, 0x64, 0x20, 0x66, 0x6f, 0x72, 0x20,
  2596. 0x79, 0x6f, 0x75, 0x21, 0x21, 0x21, 0x20, 0x72,
  2597. 0x65, 0x61, 0x6c, 0x6c, 0x79, 0x21, 0x21, 0x21 },
  2598. .ilen = 32,
  2599. .result = { 0x0b, 0x03, 0xcd, 0x8a, 0xbe, 0x95, 0xfd, 0xb1,
  2600. 0xc1, 0x44, 0x91, 0x0b, 0xa5, 0xc9, 0x1b, 0xb4,
  2601. 0xa9, 0xda, 0x1e, 0x9e, 0xb1, 0x3e, 0x2a, 0x8f,
  2602. 0xea, 0xa5, 0x6a, 0x85, 0xd1, 0xf4, 0xa8, 0xa5 },
  2603. .rlen = 32,
  2604. }
  2605. };
  2606. static struct cipher_testvec xeta_dec_tv_template[] = {
  2607. {
  2608. .key = { [0 ... 15] = 0x00 },
  2609. .klen = 16,
  2610. .input = { 0xaa, 0x22, 0x96, 0xe5, 0x6c, 0x61, 0xf3, 0x45 },
  2611. .ilen = 8,
  2612. .result = { [0 ... 8] = 0x00 },
  2613. .rlen = 8,
  2614. }, {
  2615. .key = { 0x2b, 0x02, 0x05, 0x68, 0x06, 0x14, 0x49, 0x76,
  2616. 0x77, 0x5d, 0x0e, 0x26, 0x6c, 0x28, 0x78, 0x43 },
  2617. .klen = 16,
  2618. .input = { 0x82, 0x3e, 0xeb, 0x35, 0xdc, 0xdd, 0xd9, 0xc3 },
  2619. .ilen = 8,
  2620. .result = { 0x74, 0x65, 0x73, 0x74, 0x20, 0x6d, 0x65, 0x2e },
  2621. .rlen = 8,
  2622. }, {
  2623. .key = { 0x09, 0x65, 0x43, 0x11, 0x66, 0x44, 0x39, 0x25,
  2624. 0x51, 0x3a, 0x16, 0x10, 0x0a, 0x08, 0x12, 0x6e },
  2625. .klen = 16,
  2626. .input = { 0xe2, 0x04, 0xdb, 0xf2, 0x89, 0x85, 0x9e, 0xea,
  2627. 0x61, 0x35, 0xaa, 0xed, 0xb5, 0xcb, 0x71, 0x2c },
  2628. .ilen = 16,
  2629. .result = { 0x6c, 0x6f, 0x6e, 0x67, 0x65, 0x72, 0x5f, 0x74,
  2630. 0x65, 0x73, 0x74, 0x5f, 0x76, 0x65, 0x63, 0x74 },
  2631. .rlen = 16,
  2632. }, {
  2633. .key = { 0x4d, 0x76, 0x32, 0x17, 0x05, 0x3f, 0x75, 0x2c,
  2634. 0x5d, 0x04, 0x16, 0x36, 0x15, 0x72, 0x63, 0x2f },
  2635. .klen = 16,
  2636. .input = { 0x0b, 0x03, 0xcd, 0x8a, 0xbe, 0x95, 0xfd, 0xb1,
  2637. 0xc1, 0x44, 0x91, 0x0b, 0xa5, 0xc9, 0x1b, 0xb4,
  2638. 0xa9, 0xda, 0x1e, 0x9e, 0xb1, 0x3e, 0x2a, 0x8f,
  2639. 0xea, 0xa5, 0x6a, 0x85, 0xd1, 0xf4, 0xa8, 0xa5 },
  2640. .ilen = 32,
  2641. .result = { 0x54, 0x65, 0x61, 0x20, 0x69, 0x73, 0x20, 0x67,
  2642. 0x6f, 0x6f, 0x64, 0x20, 0x66, 0x6f, 0x72, 0x20,
  2643. 0x79, 0x6f, 0x75, 0x21, 0x21, 0x21, 0x20, 0x72,
  2644. 0x65, 0x61, 0x6c, 0x6c, 0x79, 0x21, 0x21, 0x21 },
  2645. .rlen = 32,
  2646. }
  2647. };
  2648. /*
  2649. * Compression stuff.
  2650. */
  2651. #define COMP_BUF_SIZE 512
  2652. struct comp_testvec {
  2653. int inlen, outlen;
  2654. char input[COMP_BUF_SIZE];
  2655. char output[COMP_BUF_SIZE];
  2656. };
  2657. /*
  2658. * Deflate test vectors (null-terminated strings).
  2659. * Params: winbits=11, Z_DEFAULT_COMPRESSION, MAX_MEM_LEVEL.
  2660. */
  2661. #define DEFLATE_COMP_TEST_VECTORS 2
  2662. #define DEFLATE_DECOMP_TEST_VECTORS 2
  2663. static struct comp_testvec deflate_comp_tv_template[] = {
  2664. {
  2665. .inlen = 70,
  2666. .outlen = 38,
  2667. .input = "Join us now and share the software "
  2668. "Join us now and share the software ",
  2669. .output = { 0xf3, 0xca, 0xcf, 0xcc, 0x53, 0x28, 0x2d, 0x56,
  2670. 0xc8, 0xcb, 0x2f, 0x57, 0x48, 0xcc, 0x4b, 0x51,
  2671. 0x28, 0xce, 0x48, 0x2c, 0x4a, 0x55, 0x28, 0xc9,
  2672. 0x48, 0x55, 0x28, 0xce, 0x4f, 0x2b, 0x29, 0x07,
  2673. 0x71, 0xbc, 0x08, 0x2b, 0x01, 0x00 },
  2674. }, {
  2675. .inlen = 191,
  2676. .outlen = 122,
  2677. .input = "This document describes a compression method based on the DEFLATE"
  2678. "compression algorithm. This document defines the application of "
  2679. "the DEFLATE algorithm to the IP Payload Compression Protocol.",
  2680. .output = { 0x5d, 0x8d, 0x31, 0x0e, 0xc2, 0x30, 0x10, 0x04,
  2681. 0xbf, 0xb2, 0x2f, 0xc8, 0x1f, 0x10, 0x04, 0x09,
  2682. 0x89, 0xc2, 0x85, 0x3f, 0x70, 0xb1, 0x2f, 0xf8,
  2683. 0x24, 0xdb, 0x67, 0xd9, 0x47, 0xc1, 0xef, 0x49,
  2684. 0x68, 0x12, 0x51, 0xae, 0x76, 0x67, 0xd6, 0x27,
  2685. 0x19, 0x88, 0x1a, 0xde, 0x85, 0xab, 0x21, 0xf2,
  2686. 0x08, 0x5d, 0x16, 0x1e, 0x20, 0x04, 0x2d, 0xad,
  2687. 0xf3, 0x18, 0xa2, 0x15, 0x85, 0x2d, 0x69, 0xc4,
  2688. 0x42, 0x83, 0x23, 0xb6, 0x6c, 0x89, 0x71, 0x9b,
  2689. 0xef, 0xcf, 0x8b, 0x9f, 0xcf, 0x33, 0xca, 0x2f,
  2690. 0xed, 0x62, 0xa9, 0x4c, 0x80, 0xff, 0x13, 0xaf,
  2691. 0x52, 0x37, 0xed, 0x0e, 0x52, 0x6b, 0x59, 0x02,
  2692. 0xd9, 0x4e, 0xe8, 0x7a, 0x76, 0x1d, 0x02, 0x98,
  2693. 0xfe, 0x8a, 0x87, 0x83, 0xa3, 0x4f, 0x56, 0x8a,
  2694. 0xb8, 0x9e, 0x8e, 0x5c, 0x57, 0xd3, 0xa0, 0x79,
  2695. 0xfa, 0x02 },
  2696. },
  2697. };
  2698. static struct comp_testvec deflate_decomp_tv_template[] = {
  2699. {
  2700. .inlen = 122,
  2701. .outlen = 191,
  2702. .input = { 0x5d, 0x8d, 0x31, 0x0e, 0xc2, 0x30, 0x10, 0x04,
  2703. 0xbf, 0xb2, 0x2f, 0xc8, 0x1f, 0x10, 0x04, 0x09,
  2704. 0x89, 0xc2, 0x85, 0x3f, 0x70, 0xb1, 0x2f, 0xf8,
  2705. 0x24, 0xdb, 0x67, 0xd9, 0x47, 0xc1, 0xef, 0x49,
  2706. 0x68, 0x12, 0x51, 0xae, 0x76, 0x67, 0xd6, 0x27,
  2707. 0x19, 0x88, 0x1a, 0xde, 0x85, 0xab, 0x21, 0xf2,
  2708. 0x08, 0x5d, 0x16, 0x1e, 0x20, 0x04, 0x2d, 0xad,
  2709. 0xf3, 0x18, 0xa2, 0x15, 0x85, 0x2d, 0x69, 0xc4,
  2710. 0x42, 0x83, 0x23, 0xb6, 0x6c, 0x89, 0x71, 0x9b,
  2711. 0xef, 0xcf, 0x8b, 0x9f, 0xcf, 0x33, 0xca, 0x2f,
  2712. 0xed, 0x62, 0xa9, 0x4c, 0x80, 0xff, 0x13, 0xaf,
  2713. 0x52, 0x37, 0xed, 0x0e, 0x52, 0x6b, 0x59, 0x02,
  2714. 0xd9, 0x4e, 0xe8, 0x7a, 0x76, 0x1d, 0x02, 0x98,
  2715. 0xfe, 0x8a, 0x87, 0x83, 0xa3, 0x4f, 0x56, 0x8a,
  2716. 0xb8, 0x9e, 0x8e, 0x5c, 0x57, 0xd3, 0xa0, 0x79,
  2717. 0xfa, 0x02 },
  2718. .output = "This document describes a compression method based on the DEFLATE"
  2719. "compression algorithm. This document defines the application of "
  2720. "the DEFLATE algorithm to the IP Payload Compression Protocol.",
  2721. }, {
  2722. .inlen = 38,
  2723. .outlen = 70,
  2724. .input = { 0xf3, 0xca, 0xcf, 0xcc, 0x53, 0x28, 0x2d, 0x56,
  2725. 0xc8, 0xcb, 0x2f, 0x57, 0x48, 0xcc, 0x4b, 0x51,
  2726. 0x28, 0xce, 0x48, 0x2c, 0x4a, 0x55, 0x28, 0xc9,
  2727. 0x48, 0x55, 0x28, 0xce, 0x4f, 0x2b, 0x29, 0x07,
  2728. 0x71, 0xbc, 0x08, 0x2b, 0x01, 0x00 },
  2729. .output = "Join us now and share the software "
  2730. "Join us now and share the software ",
  2731. },
  2732. };
  2733. /*
  2734. * Michael MIC test vectors from IEEE 802.11i
  2735. */
  2736. #define MICHAEL_MIC_TEST_VECTORS 6
  2737. static struct hash_testvec michael_mic_tv_template[] = {
  2738. {
  2739. .key = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
  2740. .ksize = 8,
  2741. .plaintext = { },
  2742. .psize = 0,
  2743. .digest = { 0x82, 0x92, 0x5c, 0x1c, 0xa1, 0xd1, 0x30, 0xb8 }
  2744. },
  2745. {
  2746. .key = { 0x82, 0x92, 0x5c, 0x1c, 0xa1, 0xd1, 0x30, 0xb8 },
  2747. .ksize = 8,
  2748. .plaintext = { 'M' },
  2749. .psize = 1,
  2750. .digest = { 0x43, 0x47, 0x21, 0xca, 0x40, 0x63, 0x9b, 0x3f }
  2751. },
  2752. {
  2753. .key = { 0x43, 0x47, 0x21, 0xca, 0x40, 0x63, 0x9b, 0x3f },
  2754. .ksize = 8,
  2755. .plaintext = { 'M', 'i' },
  2756. .psize = 2,
  2757. .digest = { 0xe8, 0xf9, 0xbe, 0xca, 0xe9, 0x7e, 0x5d, 0x29 }
  2758. },
  2759. {
  2760. .key = { 0xe8, 0xf9, 0xbe, 0xca, 0xe9, 0x7e, 0x5d, 0x29 },
  2761. .ksize = 8,
  2762. .plaintext = { 'M', 'i', 'c' },
  2763. .psize = 3,
  2764. .digest = { 0x90, 0x03, 0x8f, 0xc6, 0xcf, 0x13, 0xc1, 0xdb }
  2765. },
  2766. {
  2767. .key = { 0x90, 0x03, 0x8f, 0xc6, 0xcf, 0x13, 0xc1, 0xdb },
  2768. .ksize = 8,
  2769. .plaintext = { 'M', 'i', 'c', 'h' },
  2770. .psize = 4,
  2771. .digest = { 0xd5, 0x5e, 0x10, 0x05, 0x10, 0x12, 0x89, 0x86 }
  2772. },
  2773. {
  2774. .key = { 0xd5, 0x5e, 0x10, 0x05, 0x10, 0x12, 0x89, 0x86 },
  2775. .ksize = 8,
  2776. .plaintext = { 'M', 'i', 'c', 'h', 'a', 'e', 'l' },
  2777. .psize = 7,
  2778. .digest = { 0x0a, 0x94, 0x2b, 0x12, 0x4e, 0xca, 0xa5, 0x46 },
  2779. }
  2780. };
  2781. /*
  2782. * Cipher speed tests
  2783. */
  2784. static struct cipher_speed aes_speed_template[] = {
  2785. { .klen = 16, .blen = 16, },
  2786. { .klen = 16, .blen = 64, },
  2787. { .klen = 16, .blen = 256, },
  2788. { .klen = 16, .blen = 1024, },
  2789. { .klen = 16, .blen = 8192, },
  2790. { .klen = 24, .blen = 16, },
  2791. { .klen = 24, .blen = 64, },
  2792. { .klen = 24, .blen = 256, },
  2793. { .klen = 24, .blen = 1024, },
  2794. { .klen = 24, .blen = 8192, },
  2795. { .klen = 32, .blen = 16, },
  2796. { .klen = 32, .blen = 64, },
  2797. { .klen = 32, .blen = 256, },
  2798. { .klen = 32, .blen = 1024, },
  2799. { .klen = 32, .blen = 8192, },
  2800. /* End marker */
  2801. { .klen = 0, .blen = 0, }
  2802. };
  2803. static struct cipher_speed des3_ede_speed_template[] = {
  2804. { .klen = 24, .blen = 16, },
  2805. { .klen = 24, .blen = 64, },
  2806. { .klen = 24, .blen = 256, },
  2807. { .klen = 24, .blen = 1024, },
  2808. { .klen = 24, .blen = 8192, },
  2809. /* End marker */
  2810. { .klen = 0, .blen = 0, }
  2811. };
  2812. static struct cipher_speed twofish_speed_template[] = {
  2813. { .klen = 16, .blen = 16, },
  2814. { .klen = 16, .blen = 64, },
  2815. { .klen = 16, .blen = 256, },
  2816. { .klen = 16, .blen = 1024, },
  2817. { .klen = 16, .blen = 8192, },
  2818. { .klen = 24, .blen = 16, },
  2819. { .klen = 24, .blen = 64, },
  2820. { .klen = 24, .blen = 256, },
  2821. { .klen = 24, .blen = 1024, },
  2822. { .klen = 24, .blen = 8192, },
  2823. { .klen = 32, .blen = 16, },
  2824. { .klen = 32, .blen = 64, },
  2825. { .klen = 32, .blen = 256, },
  2826. { .klen = 32, .blen = 1024, },
  2827. { .klen = 32, .blen = 8192, },
  2828. /* End marker */
  2829. { .klen = 0, .blen = 0, }
  2830. };
  2831. static struct cipher_speed blowfish_speed_template[] = {
  2832. /* Don't support blowfish keys > 256 bit in this test */
  2833. { .klen = 8, .blen = 16, },
  2834. { .klen = 8, .blen = 64, },
  2835. { .klen = 8, .blen = 256, },
  2836. { .klen = 8, .blen = 1024, },
  2837. { .klen = 8, .blen = 8192, },
  2838. { .klen = 32, .blen = 16, },
  2839. { .klen = 32, .blen = 64, },
  2840. { .klen = 32, .blen = 256, },
  2841. { .klen = 32, .blen = 1024, },
  2842. { .klen = 32, .blen = 8192, },
  2843. /* End marker */
  2844. { .klen = 0, .blen = 0, }
  2845. };
  2846. static struct cipher_speed des_speed_template[] = {
  2847. { .klen = 8, .blen = 16, },
  2848. { .klen = 8, .blen = 64, },
  2849. { .klen = 8, .blen = 256, },
  2850. { .klen = 8, .blen = 1024, },
  2851. { .klen = 8, .blen = 8192, },
  2852. /* End marker */
  2853. { .klen = 0, .blen = 0, }
  2854. };
  2855. #endif /* _CRYPTO_TCRYPT_H */